A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker to
execute arbitrary code on the targeted system by sending a specifically crafted packet to the
application.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2023-10-04 19:15
Updated : 2024-02-01 00:49
NVD link : CVE-2023-5391
Mitre link : CVE-2023-5391
CVE.ORG link : CVE-2023-5391
JSON object : View
Products Affected
schneider-electric
- ecostruxure_power_scada_operation_with_advanced_reports
- ecostruxure_power_operation_with_advanced_reports
- ecostruxure_power_monitoring_expert
CWE
CWE-502
Deserialization of Untrusted Data