Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-29413


A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause Denial-of-Service when accessed by an unauthenticated user on the Schneider UPS Monitor service.


Published

2023-04-18T21:15:09.523

Last Modified

2024-11-21T07:57:00.790

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-306

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application schneider-electric apc_easy_ups_online_monitoring_software ≤ 2.5-ga-01-22320 Yes
Operating System microsoft windows_10 - No
Operating System microsoft windows_11 - No
Operating System microsoft windows_server_2016 - No
Operating System microsoft windows_server_2019 - No
Operating System microsoft windows_server_2022 - No
Application schneider-electric easy_ups_online_monitoring_software ≤ 2.5-gs-01-22320 Yes
Operating System microsoft windows_10 - No
Operating System microsoft windows_11 - No
Operating System microsoft windows_server_2016 - No
Operating System microsoft windows_server_2019 - No
Operating System microsoft windows_server_2022 - No

References