CVE-2023-5984

7.2HIGH

A CWE-494 Download of Code Without Integrity Check vulnerability exists that could allow modified firmware to be uploaded when an authorized admin user begins a firmware update procedure which could

Published: 11/15/2023Updated: 11/21/2024

Description

A CWE-494 Download of Code Without Integrity Check vulnerability exists that could allow modified firmware to be uploaded when an authorized admin user begins a firmware update procedure which could result in full control over the device.

AI AnalysisPowered by AI

Affected Products

schneider-electricion8650_firmware
schneider-electricion8650
-
schneider-electricion8800_firmware
schneider-electricion8800
-

References