Описание
Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 allows remote attackers to read database records by leveraging access to the guest account.
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:aveva:clearscada:2010:r3:*:*:*:*:*:*
cpe:2.3:a:aveva:clearscada:2010:r3.1:*:*:*:*:*:*
cpe:2.3:a:aveva:clearscada:2013:r1:*:*:*:*:*:*
cpe:2.3:a:aveva:clearscada:2013:r1.1:*:*:*:*:*:*
cpe:2.3:a:aveva:clearscada:2013:r1.1a:*:*:*:*:*:*
cpe:2.3:a:aveva:clearscada:2013:r1.2:*:*:*:*:*:*
cpe:2.3:a:aveva:clearscada:2013:r2:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:scada_expert_clearscada:2013:r2.1:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:scada_expert_clearscada:2014:r1:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00537
Низкий
6.4 Medium
CVSS2
5 Medium
CVSS2
Дефекты
CWE-287
CWE-264
Связанные уязвимости
github
больше 3 лет назад
Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 allows remote attackers to read database records by leveraging access to the guest account.
EPSS
Процентиль: 67%
0.00537
Низкий
6.4 Medium
CVSS2
5 Medium
CVSS2
Дефекты
CWE-287
CWE-264