First published: Mon Dec 24 2018(Updated: )
An Improper Input Validation vulnerability exists in Pro-Face GP-Pro EX v4.08 and previous versions which could cause the execution arbitrary executable when GP-Pro EX is launched.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric Proface GP-Pro EX | <=4.08 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2018-7832.
The title of the vulnerability is 'An Improper Input Validation vulnerability exists in Pro-Face GP-Pro EX v4.08 and previous versions'.
The vulnerability could cause the execution of arbitrary executable when GP-Pro EX is launched.
The Pro-Face GP-Pro EX v4.08 and previous versions are affected by the vulnerability.
The severity level of the vulnerability is high, with a CVSS score of 8.8.
Yes, Schneider-electric has released a fix for the vulnerability. Please refer to their website for more information.