Improper Input Validation in EcoStruxure Power Monitoring Expert by Schneider Electric
CVE-2021-22827
8.8HIGH
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 28 January 2022
What is CVE-2021-22827?
An improper input validation vulnerability has been identified in Schneider Electric's EcoStruxure Power Monitoring Expert, which could potentially allow an attacker to execute arbitrary code. This issue arises when a user visits a specific page that contains a maliciously crafted payload. This vulnerability highlights the importance of adequate input validation measures in software applications to prevent unauthorized actions and maintain system integrity.