A CWE-94: Code Injection vulnerability exists in ProClima (all versions prior to version 8.0.0) which could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system in all versions of ProClima prior to version 8.0.0.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.schneider-electric.com/en/download/document/SEVD-2019-162-01/ | Vendor Advisory | 
| https://www.schneider-electric.com/en/download/document/SEVD-2019-162-01/ | Vendor Advisory | 
Configurations
                    History
                    21 Nov 2024, 04:47
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://www.schneider-electric.com/en/download/document/SEVD-2019-162-01/ - Vendor Advisory | 
Information
                Published : 2019-07-15 21:15
Updated : 2024-11-21 04:47
NVD link : CVE-2019-6823
Mitre link : CVE-2019-6823
CVE.ORG link : CVE-2019-6823
JSON object : View
Products Affected
                schneider-electric
- proclima
CWE
                
                    
                        
                        CWE-94
                        
            Improper Control of Generation of Code ('Code Injection')
