Missing Authentication Vulnerability in Interactive Graphical SCADA System by Schneider Electric
CVE-2021-22823
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 11 February 2022
What is CVE-2021-22823?
A vulnerability in Schneider Electric's Interactive Graphical SCADA System could allow an unauthorized user to delete arbitrary files by exploiting a lack of proper authentication for critical functions. This vulnerability arises due to insufficient validation of network messages, enabling potential misuse by malicious actors, particularly affecting users running the Data Collector (dc.exe) in versions V15.0.0.21320 and earlier.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Interactive Graphical SCADA System Data Collector (dc.exe) (V15.0.0.21320 and prior) Interactive Graphical SCADA System Data Collector (dc.exe) (V15.0.0.21320 and prior)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved