CVE-2017-9958 PUBLISHED

Reported by schneider · Published September 25, 2017

An improper access control vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an improper handling of the system configuration can allow an attacker to execute arbitrary code under the context of root.

Affected Products

VendorProductVersions
Schneider Electric SEU.MotionU.motion Builder Versions 1.2.1 and prior.
Schneider Electric SEU.MotionU.motion Builder Versions 1.2.1 and prior.

Timeline

References

Open in Interactive Console →