CVE-2020-7496
ARGUMENT INJECTION CWE-88
A remote attacker can trick a victim to open a specially crafted project file and gain unauthorized write access to the target system.
Risk Information
- CVE ID
- CVE-2020-7496
- Vendor
- Schneider Electric
- Product
- Struxure Operator Terminal Expert
- CVSS v3
- 3.3