First published: Wed Jul 12 2023(Updated: )
A CWE-120: Buffer Copy without Checking Size of Input (Classic Buffer Overflow) vulnerability exists that could cause user privilege escalation if a local user sends specific string input to a local function call.
Credit: cybersecurity@se.com cybersecurity@se.com
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider-electric Accutech Manager | <=2.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-29414.
The severity of CVE-2023-29414 is high (7).
The vulnerability CVE-2023-29414 occurs due to a buffer copy without checking the size of input (Classic Buffer Overflow).
The vulnerability CVE-2023-29414 could cause user privilege escalation if a local user sends specific string input.
Please refer to the reference link for available fix information for the vulnerability CVE-2023-29414.