VYPR

Ecostruxure It Gateway

by Schneider Electric

CVEs (3)

  • CVE-2024-10575CriNov 13, 2024
    risk 0.64cvss 9.8epss 0.01

    CWE-862: Missing Authorization vulnerability exists that could cause unauthorized access when enabled on the network and potentially impacting connected devices.

  • CVE-2024-0865HigJun 12, 2024
    risk 0.51cvss 7.8epss 0.00

    CWE-798: Use of hard-coded credentials vulnerability exists that could cause local privilege escalation when logged in as a non-administrative user.

  • CVE-2020-10626HigMay 14, 2020
    risk 0.51cvss 7.8epss 0.01

    In Fazecast jSerialComm, Version 2.2.2 and prior, an uncontrolled search path element vulnerability could allow a malicious DLL file with the same name of any resident DLLs inside the software installation to execute arbitrary code.