Risk Scores
CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.42%
62.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| schneider-electric | ecostruxure_geo_scada_expert_2021 | 84.8027.1, 84.8120.1, 84.8108.1 |
| Schneider Electric | EcoStruxure Geo SCADA Expert 2019 - 2021 (formerly known as ClearSCADA) | All |
| AVEVA | AVEVA Plant SCADA Access Anywhere | all |
| schneider-electric | ecostruxure_geo_scada_expert_2020 | 83.7913.1, 83.7551.1, 83.7578.1 |
| AVEVA | AVEVA InTouch Access Anywhere | all |
| schneider-electric | ecostruxure_geo_scada_expert_2019 | 81.7578.1, 81.7545.1, 81.7522.1 |
Timeline
- Jan 10, 2023 CVE Published
- Feb 1, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 13, 2023 EPSS Score
- Apr 21, 2023 EPSS Score
- May 31, 2023 EPSS Score
- Jul 9, 2023 EPSS Score
- Aug 18, 2023 EPSS Score
- Sep 26, 2023 EPSS Score
- Nov 5, 2023 EPSS Score
- Dec 14, 2023 EPSS Score
- Jan 23, 2024 EPSS Score
References
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-010-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-010-02_Geo_SCADA_Security_Notification.pdf url
- https://nvd.nist.gov/vuln/detail/CVE-2023-22611 advisory
- https://www.se.com/ww/en/download/document/SEVD-2023-010-02 url
- https://www.aveva.com/en/support-and-success/cyber-security-updates/ url
- https://www.cisa.gov/uscert/ics/advisories/icsa-22-130-05 url