CVE-2019-10981: High severity schneider electric scada expert vijeo citect vulnerability
Published May 31, 2019
·Updated
In Vijeo Citect 7.30 and 7.40, and CitectSCADA 7.30 and 7.40, a vulnerability has been identified that may allow an authenticated local user access to Citect user credentials.
Affected Software
4 affected components
Schneider-electric Citectscada=7.30
Schneider-electric Citectscada=7.40
Schneider-electric Scada Expert Vijeo Citect=7.30
Schneider-electric Scada Expert Vijeo Citect=7.40
Remediation
Event History
May 31, 2019
CVE Published
via MITRE·08:59 PM
Data Sourced
via MITRE·08:59 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-10981?
CVE-2019-10981 is a vulnerability in Vijeo Citect 7.30 and 7.40 and CitectSCADA 7.30 and 7.40 that allows an authenticated local user to access Citect user credentials.
2
What software versions are affected by CVE-2019-10981?
Vijeo Citect 7.30, Vijeo Citect 7.40, CitectSCADA 7.30, and CitectSCADA 7.40 are affected by CVE-2019-10981.
3
What is the severity of CVE-2019-10981?
CVE-2019-10981 has a severity rating of 7.8, which is considered high.
4
How can an authenticated local user exploit CVE-2019-10981?
An authenticated local user can exploit CVE-2019-10981 to gain access to Citect user credentials.
5
How can I fix CVE-2019-10981?
To fix CVE-2019-10981, it is recommended to apply the necessary updates or patches provided by Schneider-electric.