Lucene search

K
cvelistSchneiderCVELIST:CVE-2018-7797
HistoryDec 17, 2018 - 10:00 p.m.

CVE-2018-7797

2018-12-1722:00:00
schneider
www.cve.org

0.001 Low

EPSS

Percentile

38.9%

A URL redirection vulnerability exists in Power Monitoring Expert, Energy Expert (formerly Power Manager) - EcoStruxure Power Monitoring Expert (PME) v8.2 (all editions), EcoStruxure Energy Expert 1.3 (formerly Power Manager), EcoStruxure Power SCADA Operation (PSO) 8.2 Advanced Reports and Dashboards Module, EcoStruxure Power Monitoring Expert (PME) v9.0, EcoStruxure Energy Expert v2.0, and EcoStruxure Power SCADA Operation (PSO) 9.0 Advanced Reports and Dashboards Module which could cause a phishing attack when redirected to a malicious site.

CNA Affected

[
  {
    "product": "Power Monitoring Expert, Energy Expert (formerly Power Manager) - EcoStruxureª Power Monitoring Expert (PME) v8.2 (all editions), EcoStruxureª Energy Expert 1.3 (formerly Power Manager), EcoStruxureª Power SCADA Operation (PSO) 8.2 Advanced Reports and Dashboards Module, EcoStruxureª Power Monitoring Expert (PME) v9.0, EcoStruxureª Energy Expert v2.0, and EcoStruxureªPower SCADA Operation (PSO) 9.0 Advanced Reports and Dashboards Module",
    "vendor": "Schneider Electric SE",
    "versions": [
      {
        "status": "affected",
        "version": "EcoStruxure&#xaa"
      },
      {
        "status": "affected",
        "version": "Power Monitoring Expert (PME) v8.2 (all editions), EcoStruxure&#xaa"
      },
      {
        "status": "affected",
        "version": "Energy Expert 1.3 (formerly Power Manager), EcoStruxure&#xaa"
      },
      {
        "status": "affected",
        "version": "Power SCADA Operation (PSO) 8.2 Advanced Reports and Dashboards Module, EcoStruxure&#xaa"
      },
      {
        "status": "affected",
        "version": "Power Monitoring Expert (PME) v9.0, EcoStruxure&#xaa"
      },
      {
        "status": "affected",
        "version": "Energy Expert v2.0, and EcoStruxure&#xaa"
      },
      {
        "status": "affected",
        "version": "Power SCADA Operation (PSO) 9.0 Advanced Reports and Dashboards Module"
      }
    ]
  }
]

0.001 Low

EPSS

Percentile

38.9%

Related for CVELIST:CVE-2018-7797