CVE-2023-29411
CVE-2023-29411
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could allow
changes to administrative credentials, leading to potential remote code execution without
requiring prior authentication on the Java RMI interface.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Produtos afetados
Schneider Electric · APC Easy UPS Online Monitoring Software (Windows 10, 11 Windows Server 2016, 2019, 2022)Schneider Electric · Schneider Electric Easy UPS Online Monitoring Software (Windows 10, 11 Windows Server 2016, 2019, 2022)Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →