Schneider Electric is aware of a vulnerability in its Easy UPS Online Monitoring Software. Failure to apply the remediations provided may risk elevation of privileges which could result in arbitrary file deletion with system privileges. There is one: CVE-2023-6407 (CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability).
Files
File Name | ||
SEVD-2023-346-03.pdf
|
|
|
SEVD-2023-346-03_CN.pdf
|
|
|
sevd-2023-346-03.json
|
|
Related products
Product Ranges: