CVE-2022-24321: High severity schneider electric clearscada vulnerability
A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists that could cause Denial of Service against the Geo SCADA server when receiving a malformed HTTP request. Affected Product: ClearSCADA (All Versions), EcoStruxure Geo SCADA Expert 2019 (All Versions), EcoStruxure Geo SCADA Expert 2020 (All Versions)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability?
The vulnerability is a CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability.
What is the severity of CVE-2022-24321?
The severity of CVE-2022-24321 is high with a CVSS score of 7.5.
Which products are affected by CVE-2022-24321?
The affected products are Schneider-electric ClearSCADA, Schneider-electric EcoStruxure Geo SCADA Expert 2019, and Schneider-electric EcoStruxure Geo SCADA Expert 2020.
How does CVE-2022-24321 impact the Geo SCADA server?
CVE-2022-24321 can cause Denial of Service against the Geo SCADA server when receiving a malformed HTTP request.
How can I fix CVE-2022-24321?
There is currently no known fix for CVE-2022-24321. It is recommended to contact the product vendor for further assistance.