First published: Wed Apr 15 2020(Updated: )
**VERSION NOT SUPPORTED WHEN ASSIGNED** A legacy support account in the TriStation software version v4.9.0 and earlier could cause improper access to the TriStation host machine. This was addressed in TriStation version v4.9.1 and v4.10.1 released on May 30, 2013.1
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Tristation 1131 | >=1.0.0<=4.9.0 | |
Schneider-electric Tristation 1131 | =4.10.0 | |
Schneider-electric Tristation 1131 | =4.12.0 | |
Microsoft Windows 7 | ||
Microsoft Windows NT | ||
Microsoft Windows XP | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-7485 is a vulnerability in the TriStation software version v4.9.0 and earlier which could allow improper access to the TriStation host machine.
CVE-2020-7485 has a severity rating of 9.8 (Critical).
The TriStation software versions v4.9.0 and earlier are affected by CVE-2020-7485.
CVE-2020-7485 was addressed in TriStation versions v4.9.1 and v4.10.1 released on May 30, 2013.
You can find more information about CVE-2020-7485 at the following references: [US-CERT Advisory](https://us-cert.cisa.gov/ics/advisories/icsa-20-205-01) and [SESB-2020-105-01](https://www.se.com/ww/en/download/document/SESB-2020-105-01).