CVE-2023-28004
9.8CRITICALA CWE-129: Improper validation of an array index vulnerability exists where a specially crafted Ethernet request could result in denial of service or remote code execution.
Published: 4/18/2023Updated: 11/21/2024
Description
A CWE-129: Improper validation of an array index vulnerability exists where a specially crafted Ethernet request could result in denial of service or remote code execution.
AI AnalysisPowered by AI
Affected Products
schneider-electricpowerlogic_hdpm6000_firmware
schneider-electricpowerlogic_hdpm6000
-
References
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-073-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-073-02.pdfPatchVendor Advisory
- https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-073-02&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-073-02.pdfPatchVendor Advisory