Schneider Electric Products Multiple Security Vulnerabilities
BID:57435
Info
Schneider Electric Products Multiple Security Vulnerabilities
| Bugtraq ID: | 57435 |
| Class: | Unknown |
| CVE: |
CVE-2013-0663 CVE-2013-0664 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 16 2013 12:00AM |
| Updated: | Mar 19 2015 09:43AM |
| Credit: | Arthur Gervais |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Schneider Electric Products Multiple Security Vulnerabilities
Schneider Electric Products are prone to multiple security vulnerabilities.
Successfully exploiting these issues allows remote attackers to execute arbitrary code or perform unauthorized actions in the context of the user's session; other attacks are also possible.
Note: The denial-of-service vulnerability issue affecting Modicon M340 and the authentication-bypass issue affecting Maagelis XBT HMI were determined not to be vulnerabilities.
The following Schneider Electric products are affected:
BMX NOE 0110
Modicon M340
Schneider Electric Products are prone to multiple security vulnerabilities.
Successfully exploiting these issues allows remote attackers to execute arbitrary code or perform unauthorized actions in the context of the user's session; other attacks are also possible.
Note: The denial-of-service vulnerability issue affecting Modicon M340 and the authentication-bypass issue affecting Maagelis XBT HMI were determined not to be vulnerabilities.
The following Schneider Electric products are affected:
BMX NOE 0110
Modicon M340