VYPR
High severity7.8NVD Advisory· Published Jan 28, 2022· Updated Jun 17, 2026

CVE-2021-22808

CVE-2021-22808

Description

A CWE-416: Use After Free vulnerability exists that could cause arbitrary code execution when a malicious *.gd1 configuration file is loaded into the GUIcon tool. Affected Product: Eurotherm by Schneider Electric GUIcon Version 2.0 (Build 683.003) and prior

Affected products

3
  • cpe:2.3:a:schneider-electric:guicon:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:schneider-electric:guicon:*:*:*:*:*:*:*:*range: <=2.0
    • (no CPE)range: <= 2.0 (Build 683.003)
  • Eurotherm by Schneider Electric/GUIcondescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.