CVE-2018-7776

MEDIUM

Schneider Electric U.motion Builder <1.3.4 - Info Disclosure

Title source: llm
STIX 2.1

Description

The vulnerability exists within error.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. System information is returned to the attacker that contains sensitive data.

References (1)

Core 1
Core References

Scores

CVSS v3 4.3
EPSS 0.0036
EPSS Percentile 58.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Details

CWE
CWE-200
Status published
Products (1)
schneider-electric/u.motion_builder < 1.3.4
Published Jul 03, 2018
Tracked Since Feb 18, 2026