VYPR

Easergy Studio

by Schneider Electric

CVEs (2)

  • CVE-2024-2747HigJun 12, 2024
    risk 0.51cvss 7.8epss 0.00

    CWE-428: Unquoted search path or element vulnerability exists in Easergy Studio, which could cause privilege escalation when a valid user replaces a trusted file name on the system and reboots the machine.

  • CVE-2023-7032HigJan 9, 2024
    risk 0.51cvss 7.8epss 0.00

    A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker logged in with a user level account to gain higher privileges by providing a harmful serialized object.