Schneider Electric Ecostruxure Geo Scada Expert 2019 2021 vulnerabilities
2 known vulnerabilities affecting schneider_electric/ecostruxure_geo_scada_expert_2019_2021.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2023-22610HIGHCVSS 7.5≥ All, < October 20222023-01-31
CVE-2023-22610 [HIGH] CWE-863 CVE-2023-22610:
A CWE-863: Incorrect Authorization vulnerability exists that could cause Denial of
Service against
A CWE-863: Incorrect Authorization vulnerability exists that could cause Denial of
Service against the Geo SCADA server when specific messages are sent to the server over the
database server TCP port.
cvelistv5nvd
CVE-2023-22611HIGHCVSS 7.5≥ All, < October 20222023-01-31
CVE-2023-22611 [HIGH] CWE-200 CVE-2023-22611: A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that coul
A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists that could cause information disclosure when specific messages are sent to the server over the database server TCP port. Affected Products: EcoStruxure Geo SCADA Expert 2019 - 2021 (formerly known as ClearSCADA) (Versions prior to October 2022)
cvelistv5nvd