CVE-2018-7793
Summary
| CVE | CVE-2018-7793 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-12-24 16:29:00 UTC |
| Updated | 2020-08-24 17:37:00 UTC |
| Description | A Credential Management vulnerability exists in FoxView HMI SCADA (All Foxboro DCS, Foxboro Evo, and IA Series versions prior to Foxboro DCS Control Core Services 9.4 (CCS 9.4) and FoxView 10.5.) which could cause unauthorized disclosure, modification, or disruption in service when the password is modified without permission. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Schneider-electric | Foxboro Dcs | All | All | All | All |
| Application | Schneider-electric | Foxboro Dcs | All | All | All | All |
| Application | Schneider-electric | Foxboro Evo | All | All | All | All |
| Application | Schneider-electric | Foxboro Evo | All | All | All | All |
| Application | Schneider-electric | Foxview | 10.5 | All | All | All |
| Application | Schneider-electric | Foxview | 10.5 | All | All | All |
| Application | Schneider-electric | Ia Series | All | All | All | All |
| Application | Schneider-electric | Ia Series | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Notification - FoxView HMI SCADA | Schneider Electric | CONFIRM | www.schneider-electric.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.