Schneider-electric

Ecostruxure Machine Expert

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.6%
  • Veröffentlicht 02.09.2021 17:15:08
  • Zuletzt bearbeitet 21.11.2024 05:50:29

A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists in Harmony/HMI Products Configured by Vijeo Designer (all versions prior to V6.2 SP11 ), Vijeo Designer Basic (all versions prior to V1.2), or EcoStruxure Mach...

  • EPSS 0.06%
  • Veröffentlicht 26.05.2021 20:15:08
  • Zuletzt bearbeitet 21.11.2024 05:50:29

Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause denial of service or unauthorized access to system information when interacting directly with a driver installed by Vijeo Designer or EcoStr...

  • EPSS 0.22%
  • Veröffentlicht 22.04.2020 19:15:11
  • Zuletzt bearbeitet 21.11.2024 05:37:14

A CWE-345: Insufficient Verification of Data Authenticity vulnerability exists which could allow the attacker to execute malicious code on the Modicon M218, M241, M251, and M258 controllers.

  • EPSS 0.19%
  • Veröffentlicht 22.04.2020 19:15:11
  • Zuletzt bearbeitet 21.11.2024 05:37:14

A CWE-319: Cleartext Transmission of Sensitive Information vulnerability exists which could leak sensitive information transmitted between the software and the Modicon M218, M241, M251, and M258 controllers.

  • EPSS 0.47%
  • Veröffentlicht 22.04.2020 19:15:11
  • Zuletzt bearbeitet 21.11.2024 05:37:14

A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability exists on EcoStruxure Machine Expert – Basic or SoMachine Basic programming software (versions in security notification). The r...