CVE-2023-5630: Medium severity schneider electric netbotz 450 firmware vulnerability
A CWE-494: Download of Code Without Integrity Check vulnerability exists that could allow a privileged user to install an untrusted firmware.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-5630?
The severity of CVE-2023-5630 is currently classified as high due to the potential for a privileged user to install untrusted firmware.
What can an attacker do with CVE-2023-5630?
An attacker exploiting CVE-2023-5630 could install untrusted firmware, compromising the device's integrity and security.
How do I fix CVE-2023-5630?
Fixing CVE-2023-5630 involves applying the latest firmware updates provided by Schneider Electric that mitigate this vulnerability.
Which devices are affected by CVE-2023-5630?
CVE-2023-5630 affects various Schneider Electric firmware versions, including the Eb450, Eb45e, Eh450, and several others up to version 2.7.0.
Is CVE-2023-5630 a firmware vulnerability?
Yes, CVE-2023-5630 is specifically a vulnerability in firmware that allows untrusted code to be downloaded without integrity checks.