CVE-2022-32518: Critical severity schneider electric ecostruxure data center expert vulnerability
A CWE-522: Insufficiently Protected Credentials vulnerability exists that could result in unwanted access to a DCE instance when performed over a network by a malicious third-party. This CVE is unique from CVE-2022-32520. Affected Products: Data Center Expert (Versions prior to V7.9.0)
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2022-32518?
CVE-2022-32518 is a Insufficiently Protected Credentials vulnerability that allows unwanted access to a DCE instance over a network.
How severe is CVE-2022-32518?
CVE-2022-32518 has a severity rating of 9.8 out of 10 (critical).
What products are affected by CVE-2022-32518?
Data Center Expert versions prior to 7.9.0 are affected by CVE-2022-32518.
How can I fix CVE-2022-32518?
To fix CVE-2022-32518, you should update Data Center Expert to version 7.9.0 or above.
Where can I find more information about CVE-2022-32518?
You can find more information about CVE-2022-32518 in the security notification document available at the reference link provided.