7.5
CVSSv2

CVE-2020-7500

Published: 16/06/2020 Updated: 31/01/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A CWE-89:Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability exists in U.motion Servers and Touch Panels (affected versions listed in the security notification) which could cause arbitrary code to be executed when a malicious command is entered.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric mtn6501-0001_firmware

schneider-electric mtn6501-0002_firmware

schneider-electric mtn6260-0410_firmware

schneider-electric mtn6260-0415_firmware

schneider-electric mtn6260-0310_firmware

schneider-electric mtn6260-0315_firmware