CVE-2020-28211
7.8HIGHA CWE-863: Incorrect Authorization vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause bypass of authentication when overwriting memory
Опубликовано: 11/19/2020Обновлено: 11/21/2024
Описание
A CWE-863: Incorrect Authorization vulnerability exists in PLC Simulator on EcoStruxureª Control Expert (now Unity Pro) (all versions) that could cause bypass of authentication when overwriting memory using a debugger.
ИИ-АнализНа базе ИИ
Затронутые продукты
schneider-electricecostruxure_control_expert
Ссылки
- https://www.se.com/ww/en/download/document/SEVD-2020-315-07PatchVendor Advisory
- https://www.se.com/ww/en/download/document/SEVD-2020-315-07PatchVendor Advisory