First published: Wed Sep 16 2020(Updated: )
A CWE-284 Improper Access Control vulnerability exists in SCADAPack 7x Remote Connect (V3.6.3.574 and prior) which allows an attacker to place executables in a specific folder and run code whenever RemoteConnect is executed by the user.
Credit: cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Scadapack 7x Remote Connect | <=3.6.3.574 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-7531 is classified as a high severity vulnerability due to improper access control.
To fix CVE-2020-7531, update SCADAPack 7x Remote Connect to version 3.6.3.575 or later.
CVE-2020-7531 affects SCADAPack 7x Remote Connect versions 3.6.3.574 and prior.
CVE-2020-7531 is an improper access control vulnerability.
An attacker can place executables in a specific folder and run code whenever RemoteConnect is executed by the user.