QID 591109

Date Published: 2022-10-20

QID 591109: Schneider Electric EcoStruxure Power Build: Rapsody Software Multiple Vulnerabilities (SEVD-2021-012-02 V2.0)

Multiple vulnerabilities were discovered in EcoStruxure Power Build: Rapsody Software.
Affected Versions:
EcoStruxure Power Build: Rapsody Software Versions prior to V2.1.13

QID Detection Logic:(Authenticated)
This QID checks the registry entries to check the vulnerable version of the product.

Successful exploitation may risk remote code execution and Information Disclosure, which could result in loss of data integrity and confidentiality.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 6.8 severity.
  • Solution
    The vendor has released EcoStruxure Power Build Rapsody version 2.1.13 or later to remediate updates pertaining to the vulnerability.

    CVEs related to QID 591109

    Software Advisories
    Advisory ID Software Component Link
    SEVD-2021-012-02 V2.0 URL Logo download.schneider-electric.com/files?p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2021-012-02_EcoStruxure_Power_Build_Rapsody_Security_Notification_V2.0.pdf