CVE-2019-6823: Code Injection
Published Jul 15, 2019
·Updated
A CWE-94: Code Injection vulnerability exists in ProClima (all versions prior to version 8.0.0) which could allow an unauthenticated, remote attacker to execute arbitrary code on the targeted system in all versions of ProClima prior to version 8.0.0.
Affected Software
1 affected component
Schneider-electric Proclima<8.0.0
Event History
Jul 15, 2019
CVE Published
via MITRE·08:41 PM
Data Sourced
via MITRE·08:41 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for the Code Injection vulnerability in ProClima?
The vulnerability ID for the Code Injection vulnerability in ProClima is CVE-2019-6823.
2
What is the severity of CVE-2019-6823?
CVE-2019-6823 has a severity rating of critical (9.8).
3
Which versions of ProClima are affected by vulnerability CVE-2019-6823?
All versions of ProClima prior to version 8.0.0 are affected by vulnerability CVE-2019-6823.
4
How can an attacker exploit the Code Injection vulnerability in ProClima?
An unauthenticated, remote attacker can exploit the Code Injection vulnerability in ProClima to execute arbitrary code on the targeted system.
5
Is there a fix available for vulnerability CVE-2019-6823 in ProClima?
Yes, the fix for vulnerability CVE-2019-6823 in ProClima is to upgrade to version 8.0.0 or later.