Unrestricted File Upload Vulnerability in EcoStruxure Power Build Software by Schneider Electric
CVE-2021-22698
What is CVE-2021-22698?
An unrestricted file upload vulnerability exists in the EcoStruxure Power Build - Rapsody software. This flaw allows malicious users to upload a specially crafted SSD file that can lead to a stack-based buffer overflow. If exploited, it may enable remote code execution due to the improper parsing of files within the software. Affected versions include V2.1.13 and earlier, highlighting the need for immediate attention to security practices to mitigate risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
 EcoStruxure Power Build - Rapsody software V2.1.13 and prior. EcoStruxure Power Build - Rapsody software V2.1.13 and prior.
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved