CVE-2023-29411
CVE-2023-29411
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow
changes to administrative credentials, leading to potential remote code execution without
requiring prior authentication on the Java RMI interface.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Productos afectados
Schneider Electric · APC Easy UPS Online Monitoring Software (Windows 10, 11 Windows Server 2016, 2019, 2022)Schneider Electric · Schneider Electric Easy UPS Online Monitoring Software (Windows 10, 11 Windows Server 2016, 2019, 2022)¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →