High severity7.8NVD Advisory· Published Jan 22, 2020· Updated Jun 17, 2026
CVE-2019-6858
CVE-2019-6858
Description
A CWE-427:Uncontrolled Search Path Element vulnerability exists in MSX Configurator (Software Version prior to V1.0.8.1), which could cause privilege escalation when injecting a malicious DLL.
Affected products
3cpe:2.3:a:schneider-electric:msx_configurator:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:schneider-electric:msx_configurator:*:*:*:*:*:*:*:*range: <1.0.8.1
- (no CPE)range: <1.0.8.1
- MSX Configurator/MSX Configuratordescription
Patches
Vulnerability mechanics
References
1- www.se.com/ww/en/download/document/SEVD-2020-014-01nvdVendor Advisory
News mentions
0No linked articles in our index yet.