First published: Thu Jul 23 2020(Updated: )
A CWE-20: Improper input validation vulnerability exists in Easergy Builder (Version 1.4.7.2 and older) which could allow an attacker to modify project configuration files.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Easergy Builder | <=1.4.7.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2020-7518.
CVE-2020-7518 has a severity value of 7.5 (high).
CVE-2020-7518 is classified under the CWE-20 category (Improper Input Validation).
CVE-2020-7518 affects Easergy Builder version 1.4.7.2 and older.
An attacker can exploit CVE-2020-7518 by modifying project configuration files in Easergy Builder.