4.6
CVSSv2

CVE-2017-9961

Published: 26/09/2017 Updated: 03/10/2019
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A vulnerability exists in Schneider Electric's Pro-Face GP Pro EX version 4.07.000 that allows an malicious user to execute arbitrary code. Malicious code installation requires an access to the computer. By placing a specific DLL/OCX file, an attacker is able to force the process to load arbitrary DLL and execute arbitrary code in the context of the process.

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric pro-face gp pro ex 4.07.000