High severity7.8NVD Advisory· Published Jan 9, 2024· Updated Jun 17, 2026
CVE-2023-7032
CVE-2023-7032
Description
A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker logged in with a user level account to gain higher privileges by providing a harmful serialized object.
Affected products
3cpe:2.3:a:schneider-electric:easergy_studio:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:schneider-electric:easergy_studio:*:*:*:*:*:*:*:*range: <=9.3.5
- (no CPE)range: All
Patches
Vulnerability mechanics
References
1- download.schneider-electric.com/filesnvdVendor Advisory
News mentions
0No linked articles in our index yet.