Schneider Electric is aware of multiple vulnerabilities in its Trio Licensed and License-Free Data Radio products. Failure to apply the remediations and mitigations provided may risk disclosure of information, or potential installation of malicious code. There are two CVEs. (CVE-2023-5629 - CWE-601: URL Redirection to Untrusted Site (‘Open Redirect’) vulnerability) and CVE-2023-5630 (CWE-494: Download of Code Without Integrity Check vulnerability)).
Files
File Name | ||
SEVD-2023-346-01.pdf
|
|
|
sevd-2023-346-01.json
|
|
Related products
Product Ranges: