CVE-2023-37198
12.07.2023, 07:15
A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that
could cause remote code execution when an admin user on DCE uploads or tampers with install
packages.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| schneider-electric | struxureware_data_center_expert | 𝑥 ≤ 7.9.3 |
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| schneider-electric | struxureware_data_center_expert | 𝑥 ≤ 7.9.3 | ADP |