Schneider Electric InduSoft Web Studio before 8.0 allows remote attackers to execute arbitrary code or cause a denial of service (unhandled runtime exception and application crash) via a crafted Indusoft Project file.
References
Link | Resource |
---|---|
http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2015-251-01 | Vendor Advisory |
http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2015-251-01 | Vendor Advisory |
Configurations
History
21 Nov 2024, 02:36
Type | Values Removed | Values Added |
---|---|---|
References | () http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2015-251-01 - Vendor Advisory |
Information
Published : 2015-09-25 14:59
Updated : 2024-11-21 02:36
NVD link : CVE-2015-7375
Mitre link : CVE-2015-7375
CVE.ORG link : CVE-2015-7375
JSON object : View
Products Affected
indusoft
- web_studio
CWE
CWE-20
Improper Input Validation