Improper Input Validation in Schneider Electric's Engineering Workstation
CVE-2024-10083
6.8MEDIUM
Key Information:
What is CVE-2024-10083?
An improper input validation flaw has been identified in Schneider Electric's Engineering Workstation. This vulnerability may allow an authenticated user to exploit specific driver interfaces with crafted inputs, potentially resulting in a denial of service condition. Proper measures should be taken to ensure that only validated and expected input is processed by the system, mitigating the risk of disruption to services.
Affected Version(s)
Uni-Telway driver All versions
Uni-Telway driver used in EcoStruxure Control Expert All versions
Uni-Telway driver used in EcoStruxure Process Expert All Versions