Schneider-electric

U.Motion Builder

24 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Veröffentlicht 26.09.2017 01:29:03
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An improper access control vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an improper handling of the system configuration can allow an attacker to execute arbitrary code under the context of ...

  • EPSS 0.44%
  • Veröffentlicht 26.09.2017 01:29:03
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the web service contains a hidden system account with a hardcoded password. An attacker can use this information to log into the system with hi...

  • EPSS 0.49%
  • Veröffentlicht 26.09.2017 01:29:03
  • Zuletzt bearbeitet 20.04.2025 01:37:25

An authentication bypass vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which the system contains a hard-coded valid session. An attacker can use that session ID as part of the HTTP cookie of a web ...

  • EPSS 7.8%
  • Veröffentlicht 26.09.2017 01:29:03
  • Zuletzt bearbeitet 20.04.2025 01:37:25

A path traversal information disclosure vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an unauthenticated user can execute arbitrary code and exfiltrate files.