VYPR
Medium severity5.5NVD Advisory· Published Sep 13, 2022· Updated Jun 17, 2026

CVE-2022-37302

CVE-2022-37302

Description

A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause a crash of the Control Expert software when an incorrect project file is opened. Affected Products: EcoStruxure Control Expert(V15.1 HF001 and prior).

Affected products

5
  • cpe:2.3:a:schneider-electric:ecostruxure_control_expert:*:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:schneider-electric:ecostruxure_control_expert:*:*:*:*:*:*:*:*range: <15.1
    • cpe:2.3:a:schneider-electric:ecostruxure_control_expert:15.1:-:*:*:*:*:*:*
    • cpe:2.3:a:schneider-electric:ecostruxure_control_expert:15.1:hf001:*:*:*:*:*:*
    • (no CPE)range: <=V15.1 HF001
    • (no CPE)range: HF001

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.