CVE-2018-7239

A DLL hijacking vulnerability exists in Schneider Electric's SoMove Software and associated DTM software components in all versions prior to 2.6.2 which could allow an attacker to execute arbitrary code.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:schneider-electric:atv_lift_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv12_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv212_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv31_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv312_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv32_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv320_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv340_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv600_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv61_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv71_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:atv900_dtm:*:*:*:*:*:*:*:*
cpe:2.3:a:schneider-electric:somove:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-03-09 23:29

Updated : 2024-02-28 16:25


NVD link : CVE-2018-7239

Mitre link : CVE-2018-7239

CVE.ORG link : CVE-2018-7239


JSON object : View

Products Affected

schneider-electric

  • atv71_dtm
  • atv312_dtm
  • atv32_dtm
  • atv212_dtm
  • atv340_dtm
  • atv900_dtm
  • atv12_dtm
  • atv61_dtm
  • somove
  • atv_lift_dtm
  • atv31_dtm
  • atv320_dtm
  • atv600_dtm
CWE
CWE-426

Untrusted Search Path