First published: Tue Jul 03 2018(Updated: )
The vulnerability exists within error.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. System information is returned to the attacker that contains sensitive data.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric U.motion Builder | <1.3.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-7776 is a vulnerability found in Schneider Electric U.motion Builder software versions prior to v1.3.4.
CVE-2018-7776 has a severity rating of 4.3, which is considered medium.
CVE-2018-7776 exposes sensitive system information to attackers.
To fix CVE-2018-7776, you should update Schneider Electric U.motion Builder software to version 1.3.4 or later.
You can find more information about CVE-2018-7776 at the following link: https://www.schneider-electric.com/en/download/document/SEVD-2018-095-01/