First published: Wed May 22 2019(Updated: )
An Incorrect Default Permissions (CWE-276) vulnerability exists in SoMachine Basic, all versions, and Modicon M221(all references, all versions prior to firmware V1.10.0.0) which could cause unauthorized access to SoMachine Basic resource files when logged on the system hosting SoMachine Basic.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Somachine Basic | ||
Schneider-electric Modicon M221 Firmware | <1.10.0.0 | |
Schneider-electric Modicon M221 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2018-7822.
CVE-2018-7822 has a severity rating of 5.5, which is considered medium.
SoMachine Basic all versions and Modicon M221 firmware versions prior to V1.10.0.0 are affected by CVE-2018-7822.
Unauthorized access to SoMachine Basic resource files can be caused by exploiting the Incorrect Default Permissions vulnerability.
You can find more information about CVE-2018-7822 at the following link: [https://www.schneider-electric.com/en/download/document/SEVD-2019-045-01/](https://www.schneider-electric.com/en/download/document/SEVD-2019-045-01/)