A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that
could cause execution of malicious code when an unsuspicious user loads a project file from the
local filesystem into the HMI.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-23340 | A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause execution of malicious code when an unsuspicious user loads a project file from the local filesystem into the HMI. |
Thu, 02 Jan 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-01-02T20:43:15.380Z
Reserved: 2023-02-27T08:10:00.738Z
Link: CVE-2023-1049
Updated: 2024-08-02T05:32:46.335Z
Status : Modified
Published: 2023-06-14T08:15:08.773
Modified: 2024-11-21T07:38:21.647
Link: CVE-2023-1049
No data.
OpenCVE Enrichment
No data.
EUVD