QID 591077

Date Published: 2022-10-10

QID 591077: Elipse Software Elipse E3 Process Control Vulnerability (ICSA-15-069-04A)

AFFECTED PRODUCTS
The following Elipse E3 versions are affected: Elipse E3, Versions 4.5.232-4.6.161,

QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys

Successful exploitation of this vulnerability would require the victim to install and execute malicious code that could result in arbitrary code execution

  • CVSS V3 rated as Critical - 8.1 severity.
  • CVSS V2 rated as High - 6.9 severity.
  • Solution

    Customers are advised to refer to Schneider Electric MITIGATIONS section ICSA-15-069-04A for affected packages and patching details.

    Vendor References

    CVEs related to QID 591077

    Software Advisories
    Advisory ID Software Component Link
    ICSA-15-069-04A URL Logo www.cisa.gov/uscert/ics/advisories/ICSA-15-069-04A