First published: Thu Mar 16 2023(Updated: )
This vulnerability allows remote attackers to delete application-level data on affected installations of Schneider Electric IGSS. Authentication is not required to exploit this vulnerability.
Affected Software | Affected Version | How to fix |
---|---|---|
Schneider Electric IGSS Dashboard |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-CAN-19531 is critical due to the potential for remote data deletion without authentication.
To fix ZDI-CAN-19531, apply the latest security updates provided by Schneider Electric for the IGSS software.
ZDI-CAN-19531 allows remote attackers to delete application-level data, which could include critical configurations and operational data.
All installations of Schneider Electric IGSS are potentially affected by the ZDI-CAN-19531 vulnerability.
No, authentication is not required to exploit the ZDI-CAN-19531 vulnerability, making it particularly dangerous.