Improper Privilege Management in EcoStruxure Control Expert by Schneider Electric
CVE-2023-1548
5.5MEDIUM
Key Information:
- Vendor
Schneider Electric
- Vendor
- CVE Published:
- 18 April 2023
What is CVE-2023-1548?
A vulnerability exists where a local user can exploit improper privilege management within EcoStruxure Control Expert, leading to potential denial of service. This flaw affects versions V15.1 and above, posing risks to system reliability and operational integrity. The vulnerability allows unauthorized access to console server services, emphasizing the need for immediate attention and remediation.
Affected Version(s)
EcoStruxure Control Expert V15.1 and above