CVE-2023-4516
14.09.2023, 09:15
A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update Service that could allow a local attacker to change update source, potentially leading to remote code execution when the attacker force an update containing malicious content.Enginsight
Vendor | Product | Version |
---|---|---|
schneider-electric | interactive_graphical_scada_system | 𝑥 ≤ 16.0.0.23211 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration