CVE-2017-8371: Medium severity schneider electric ecostruxure data center expert vulnerability
Schneider Electric StruxureWare Data Center Expert before 7.4.0 uses cleartext RAM storage for passwords, which might allow remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8371?
CVE-2017-8371 has been rated as a high severity vulnerability due to its potential to expose sensitive information.
How do I fix CVE-2017-8371?
To fix CVE-2017-8371, upgrade your Schneider Electric StruxureWare Data Center Expert software to version 7.4.0 or later.
What are the risks of CVE-2017-8371?
The risks of CVE-2017-8371 include the exposure of passwords stored in cleartext, allowing attackers to gain unauthorized access.
Who is affected by CVE-2017-8371?
CVE-2017-8371 affects users of Schneider Electric StruxureWare Data Center Expert versions prior to 7.4.0.
What kind of attacks can exploit CVE-2017-8371?
Exploitation of CVE-2017-8371 can occur through remote attacks that leverage cleartext password storage.