cbcvebase.
CVE-2023-29411
published 2023-04-18

CVE-2023-29411: A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow changes to administrative credentials, leading to potential…

PriorityP264critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.31%
67.4th percentile
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow changes to administrative credentials, leading to potential remote code execution without requiring prior authentication on the Java RMI interface.

Affected

2 ranges
VendorProductVersion rangeFixed in
schneider-electricapc_easy_ups_online_monitoring_software<= 2.5-ga-01-22320
schneider-electriceasy_ups_online_monitoring_software<= 2.5-gs-01-22320

Detection & IOCsextracted from sources · hover to see the quote

  • Target the Java RMI interface for unauthenticated access attempts — CVE-2023-29411 allows changes to administrative credentials without prior authentication via this interface
  • Monitor for unauthenticated manipulation of internal methods through the Java RMI interface on APC Easy UPS Online Monitoring Software hosts
  • A public PoC exploit is available for this vulnerability; prioritize detection on hosts running APC Easy UPS Online Monitoring Software v2.5-GA-01-22261 and prior or Schneider Electric Easy UPS Online Monitoring Software V2.5-GA-01-22320 and prior
  • Alert on unauthenticated access to the Schneider UPS Monitor service, which is exposed to denial-of-service via CVE-2023-29413 on the same attack surface
  • ·CVSS v3 base score is 9.8 (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) — network-exploitable with no privileges or user interaction required
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.