A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause Denial-of-Service when accessed by an unauthenticated user on the Schneider UPS Monitor service.
2023-04-18T21:15:09.523
2024-11-21T07:57:00.790
Modified
CVSSv3.1: 7.5 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | schneider-electric | apc_easy_ups_online_monitoring_software | ≤ 2.5-ga-01-22320 | Yes |
Operating System | microsoft | windows_10 | - | No |
Operating System | microsoft | windows_11 | - | No |
Operating System | microsoft | windows_server_2016 | - | No |
Operating System | microsoft | windows_server_2019 | - | No |
Operating System | microsoft | windows_server_2022 | - | No |
Application | schneider-electric | easy_ups_online_monitoring_software | ≤ 2.5-gs-01-22320 | Yes |
Operating System | microsoft | windows_10 | - | No |
Operating System | microsoft | windows_11 | - | No |
Operating System | microsoft | windows_server_2016 | - | No |
Operating System | microsoft | windows_server_2019 | - | No |
Operating System | microsoft | windows_server_2022 | - | No |