NA

CVE-2023-4516

Published: 14/09/2023 Updated: 20/09/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A CWE-306: Missing Authentication for Critical Function vulnerability exists in the IGSS Update Service that could allow a local malicious user to change update source, potentially leading to remote code execution when the attacker force an update containing malicious content.

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric interactive graphical scada system