CVE-2025-7746
CVE-2025-7746
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists that could cause an unvalidated data injected by a malicious user potentially leading to modify or read data in a victim’s browser.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:N/SC:L/SI:N/SA:N
Produtos afetados
Schneider Electric · ATS490 Altivar Soft StarterSchneider Electric · ATV340E Altivar Machine DrivesSchneider Electric · ATV6000 Medium Voltage Altivar Process DrivesSchneider Electric · ATV630/650/660/680/6A0/6B0/6L0 Altivar Process DrivesSchneider Electric · ATV930/950/955/960/980/9A0/9B0/9L0/991/992/993 Altivar Process DrivesSchneider Electric · ILC992 InterLink ConverterSchneider Electric · VW3A3530D: ATVdPAC moduleSchneider Electric · VW3A3720 & VW3A3721 Altivar Process Communication ModulesQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →