Description
CWE-428: Unquoted search path or element vulnerability exists in Easergy Studio, which could
cause privilege escalation when a valid user replaces a trusted file name on the system and
reboots the machine.
Published: 2024-06-12
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-27692 CWE-428: Unquoted search path or element vulnerability exists in Easergy Studio, which could cause privilege escalation when a valid user replaces a trusted file name on the system and reboots the machine.
History

Fri, 23 Aug 2024 17:00:00 +0000

Type Values Removed Values Added
First Time appeared Schneider-electric
Schneider-electric easergy Studio
CPEs cpe:2.3:a:schneider-electric:easergy_studio:*:*:*:*:*:*:*:*
Vendors & Products Schneider-electric
Schneider-electric easergy Studio

Subscriptions

Schneider-electric Easergy Studio
cve-icon MITRE

Status: PUBLISHED

Assigner: schneider

Published:

Updated: 2024-08-19T17:40:23.892Z

Reserved: 2024-03-20T16:57:16.005Z

Link: CVE-2024-2747

cve-icon Vulnrichment

Updated: 2024-08-01T19:25:41.491Z

cve-icon NVD

Status : Modified

Published: 2024-06-12T18:15:11.680

Modified: 2024-11-21T09:10:25.580

Link: CVE-2024-2747

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses