ZeroHour

CVE-2020-7474

CVSS 3.1
7.8 high
EPSS
<1%p36
Published
()
Modified
Description

A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PMEPXM0100 (H) module, which could cause the execution of untrusted code when using double click to open a project file which may trigger execution of a malicious DLL.

Vendors
schneider-electric
Products
pmepxm0100 prosoft configurator
Weakness
CWE-427
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.