CWE-1357
Reliance on Insufficiently Trustworthy Component
ClassIncomplete
Description
The product is built from multiple separate components, but it uses a component that is not sufficiently trusted to meet expectations for security, reliability, updateability, and maintainability.
Hierarchy (View 1000)
CVEs mapped to this weakness (3)
| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2024-26024 | Hig | 0.55 | 8.4 | 0.00 | May 28, 2024 | SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in Substation Server. | |
| CVE-2024-28042 | Hig | 0.55 | 8.4 | 0.00 | May 15, 2024 | SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in PowerSYSTEM Center. | |
| CVE-2024-3313 | Hig | 0.55 | 8.4 | 0.00 | Apr 9, 2024 | SUBNET Solutions Inc. has identified vulnerabilities in third-party components used in PowerSYSTEM Server 2021 and Substation Server 2021. |