ZeroHour

CVE-2018-7770

CVSS 3.0
6.5 medium
EPSS
1%p69
Published
()
Modified
Description

The vulnerability exists within processing of sendmail.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The applet allows callers to select arbitrary files to send to an arbitrary email address.

Vendors
schneider-electric
Products
u.motion
Weakness
CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.