CVE-2023-37199

A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote code execution when an admin user on DCE tampers with backups which are then manually restored.
Configurations

Configuration 1 (hide)

cpe:2.3:a:schneider-electric:struxureware_data_center_expert:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2023-07-12 08:15

Updated : 2023-07-20 00:40


NVD link : CVE-2023-37199

Mitre link : CVE-2023-37199

CVE.ORG link : CVE-2023-37199


JSON object : View

Products Affected

schneider-electric

  • struxureware_data_center_expert
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')