CVE-2018-7243

CRITICAL

Schneider Electric's 66074 MGE Network Management Card Transverse -...

Title source: llm
STIX 2.1

Description

An authorization bypass vulnerability exists In Schneider Electric's 66074 MGE Network Management Card Transverse installed in MGE UPS and MGE STS. The integrated web server (Port 80/443/TCP) of the affected devices could allow a remote attacker to get a full access to device, bypassing the authorization system.

References (1)

Core 1
Core References

Scores

CVSS v3 9.8
EPSS 0.0223
EPSS Percentile 84.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
schneider-electric/66074_mge_network_management_card_transverse
Published Apr 18, 2018
Tracked Since Feb 18, 2026