A CWE-863: Incorrect Authorization vulnerability exists in U.motion Servers and Touch Panels (affected versions listed in the security notification) which could cause unauthorized access when a low privileged user makes unauthorized changes.
2020-06-16T20:15:14.770
2024-11-21T05:37:15.883
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:P/A:N
8.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | schneider-electric | mtn6501-0001_firmware | < 1.4.2 | Yes |
| Hardware | schneider-electric | mtn6501-0001 | - | No |
| Operating System | schneider-electric | mtn6501-0002_firmware | < 1.4.2 | Yes |
| Hardware | schneider-electric | mtn6501-0002 | - | No |
| Operating System | schneider-electric | mtn6260-0410_firmware | < 1.4.2 | Yes |
| Hardware | schneider-electric | mtn6260-0410 | - | No |
| Operating System | schneider-electric | mtn6260-0415_firmware | < 1.4.2 | Yes |
| Hardware | schneider-electric | mtn6260-0415 | - | No |
| Operating System | schneider-electric | mtn6260-0310_firmware | < 1.4.2 | Yes |
| Hardware | schneider-electric | mtn6260-0310 | - | No |
| Operating System | schneider-electric | mtn6260-0315_firmware | < 1.4.2 | Yes |
| Hardware | schneider-electric | mtn6260-0315 | - | No |