CVE-2023-1548: Medium severity ecostruxure control expert vulnerability
Published Apr 18, 2023
·Updated
A CWE-269: Improper Privilege Management vulnerability exists that could cause a local user to perform a denial of service through the console server service that is part of EcoStruxure Control Expert. Affected Products: EcoStruxure Control Expert (V15.1 and above)
Affected Software
1 affected component
Schneider-electric Ecostruxure Control Expert>=15.1
Event History
Apr 18, 2023
CVE Published
via MITRE·04:42 PM
Data Sourced
via MITRE·04:42 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-1548.
2
What is the severity level of CVE-2023-1548?
The severity level of CVE-2023-1548 is medium with a severity value of 5.5.
3
How does CVE-2023-1548 affect EcoStruxure Control Expert?
CVE-2023-1548 affects EcoStruxure Control Expert by allowing a local user to perform a denial of service through the console server service.
4
Which versions of EcoStruxure Control Expert are affected by CVE-2023-1548?
Versions 15.1 and above of EcoStruxure Control Expert are affected by CVE-2023-1548.
5
How can I fix CVE-2023-1548?
To fix CVE-2023-1548, it is recommended to apply the necessary security patches or updates provided by Schneider Electric.