CVE-2023-5391

9.8CRITICAL

A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker to execute arbitrary code on the targeted system by sending a specifically crafted packet to the appli

Published: 10/4/2023Updated: 11/21/2024

Description

A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker to execute arbitrary code on the targeted system by sending a specifically crafted packet to the application.

AI AnalysisPowered by AI

Affected Products

schneider-electricecostruxure_power_monitoring_expert
schneider-electricecostruxure_power_operation_with_advanced_reports
schneider-electricecostruxure_power_scada_operation_with_advanced_reports

References