CVE-2023-31170
MEDIUMSchweitzer Engineering Laboratories SEL-5030 - Code Injection
Title source: llmDescription
An Inclusion of Functionality from Untrusted Control Sphere vulnerability in the Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet Software could allow an attacker to embed instructions that could be executed by an authorized device operator. See Instruction Manual Appendix A and Appendix E dated 20230615 for more details. This issue affects SEL-5030 acSELerator QuickSet Software: through 7.1.3.0.
Scores
CVSS v3
5.9
EPSS
0.0007
EPSS Percentile
21.8%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:N/I:H/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-829
Status
published
Products (1)
selinc/sel-5030_acselerator_quickset
< 7.1.3.0
Published
Aug 31, 2023
Tracked Since
Feb 18, 2026