schneider-electric.comConfirmation
http://www.schneider-electric.com/en/download/document/SEVD-2017-178-01 CVE-2017-9958
HIGH
Record summary
CVE-2017-9958 has a selected CVSS score of 7.8 (high).
Description
An improper access control vulnerability exists in Schneider Electric's U.motion Builder software versions 1.2.1 and prior in which an improper handling of the system configuration can allow an attacker to execute arbitrary code under the context of root.
Description source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
| CVE List | U.motion Builder Versions 1.2.1 and prior. | affected |
References
399344vdb entry
http://www.securityfocus.com/bid/99344 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2017-9958