Lucene search

K
cvelistSchneiderCVELIST:CVE-2020-7560
HistoryDec 11, 2020 - 12:52 a.m.

CVE-2020-7560

2020-12-1100:52:30
CWE-123
schneider
www.cve.org
3
vulnerability
ecostruxure control expert
unity pro
software crash
code execution

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

31.4%

A CWE-123: Write-what-where Condition vulnerability exists in EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ Control Expert) (all versions), that could cause a crash of the software or unexpected code execution when opening a malicious file in EcoStruxure™ Control Expert software.

CNA Affected

[
  {
    "product": "EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ Control Expert) (all versions)",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ Control Expert) (all versions)"
      }
    ]
  }
]

AI Score

8.8

Confidence

High

EPSS

0.001

Percentile

31.4%

Related for CVELIST:CVE-2020-7560