CVE-2020-28212
9.8CRITICALA CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause unauthorized c
Publicado: 11/19/2020Atualizado: 11/21/2024
Descrição
A CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause unauthorized command execution when a brute force attack is done over Modbus.
Análise IADesenvolvido por IA
Produtos Afetados
schneider-electricecostruxure_control_expert
Referências
- https://www.se.com/ww/en/download/document/SEVD-2020-315-07PatchVendor Advisory
- https://www.se.com/ww/en/download/document/SEVD-2020-315-07PatchVendor Advisory