CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause unauthorized access to a project file protected with application password when opening the file with EcoStruxure Control Expert.
2024-02-14T17:15:11.247
2024-12-11T19:33:54.427
Analyzed
CVSSv3.1: 7.7 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | schneider-electric | ecostruxure_control_expert | < 16.0 | Yes |
Application | schneider-electric | ecostruxure_process_expert | < 2023 | Yes |