CVE Vulnerabilities

CVE-2018-7793

Published: Dec 24, 2018 | Modified: Aug 24, 2020
CVSS 3.x
8.7
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:L
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A Credential Management vulnerability exists in FoxView HMI SCADA (All Foxboro DCS, Foxboro Evo, and IA Series versions prior to Foxboro DCS Control Core Services 9.4 (CCS 9.4) and FoxView 10.5.) which could cause unauthorized disclosure, modification, or disruption in service when the password is modified without permission.

Affected Software

Name Vendor Start Version End Version
Foxboro_dcs Schneider-electric * ccs_9.4 (excluding)
Foxboro_evo Schneider-electric * ccs_9.4 (excluding)
Foxview Schneider-electric 10.5 (including) 10.5 (including)
Ia_series Schneider-electric * ccs_9.4 (excluding)

References