← volver
CVE-2014-9197CWE-306

Schneider Electric ETG3000 FactoryCast HMI Gateway Missing Authentication for Critical Function

28Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 10epss 2.0%
probabilidad de explotación
2.0%top 22% de las CVE
explotación observada
noninguna fuente lo reporta
The Schneider Electric ETG3000 FactoryCast HMI Gateway with firmware before 1.60 IR 04 stores rde.jar under the web root with insufficient access control, which allows remote attackers to obtain sensitive setup and configuration information via a direct request.
AV:N/AC:L/Au:N/C:C/I:C/A:C