CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause unauthorized
access to a project file protected with application password when opening the file with
EcoStruxure Control Expert.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-58646 | CWE-798: Use of Hard-coded Credentials vulnerability exists that could cause unauthorized access to a project file protected with application password when opening the file with EcoStruxure Control Expert. |
Mon, 12 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 11 Dec 2024 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Schneider-electric
Schneider-electric ecostruxure Control Expert Schneider-electric ecostruxure Process Expert |
|
| CPEs | cpe:2.3:a:schneider-electric:ecostruxure_control_expert:*:*:*:*:*:*:*:* cpe:2.3:a:schneider-electric:ecostruxure_process_expert:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Schneider-electric
Schneider-electric ecostruxure Control Expert Schneider-electric ecostruxure Process Expert |
Status: PUBLISHED
Assigner: schneider
Published:
Updated: 2025-05-12T14:07:03.007Z
Reserved: 2023-11-30T09:53:56.413Z
Link: CVE-2023-6409
Updated: 2024-08-02T08:28:21.802Z
Status : Analyzed
Published: 2024-02-14T17:15:11.247
Modified: 2024-12-11T19:33:54.427
Link: CVE-2023-6409
No data.
OpenCVE Enrichment
No data.
EUVD