VYPR

Ecostruxure Energy Expert

by Schneider Electric

CVEs (4)

  • CVE-2020-7547HigDec 1, 2020
    risk 0.57cvss 8.8epss 0.01

    A CWE-284: Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Software (see security notification for version information) that could allow a user the ability to perform actions via the web interface at a higher privilege…

  • CVE-2020-7545HigDec 1, 2020
    risk 0.47cvss 7.2epss 0.02

    A CWE-284:Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Software (see security notification for version information) that could allow for arbitrary code execution on the server when an authorized user access an…

  • CVE-2018-7797MedDec 17, 2018
    risk 0.40cvss 6.1epss 0.01

    A URL redirection vulnerability exists in Power Monitoring Expert, Energy Expert (formerly Power Manager) - EcoStruxure Power Monitoring Expert (PME) v8.2 (all editions), EcoStruxure Energy Expert 1.3 (formerly Power Manager), EcoStruxure Power SCADA Operation (PSO) 8.2 Advanced…

  • CVE-2020-7546MedDec 1, 2020
    risk 0.35cvss 5.4epss 0.01

    A CWE-79: Improper Neutralization of Input During Web Page Generation vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Software (see security notification for version information) that could allow an attacker to perform actions on behalf of…