A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProClima (all versions prior to version 8.0.0) which could allow a malicious DLL file, with the same name of any resident DLLs inside the software installation, to execute arbitrary code in all versions of ProClima prior to version 8.0.0.
References
Link | Resource |
---|---|
https://www.schneider-electric.com/en/download/document/SEVD-2019-162-01/ | Vendor Advisory |
https://www.schneider-electric.com/en/download/document/SEVD-2019-162-01/ | Vendor Advisory |
Configurations
History
21 Nov 2024, 04:47
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.schneider-electric.com/en/download/document/SEVD-2019-162-01/ - Vendor Advisory |
Information
Published : 2019-07-15 21:15
Updated : 2024-11-21 04:47
NVD link : CVE-2019-6825
Mitre link : CVE-2019-6825
CVE.ORG link : CVE-2019-6825
JSON object : View
Products Affected
schneider-electric
- proclima
CWE
CWE-427
Uncontrolled Search Path Element