CVE-2020-7531
IMPROPER ACCESS CONTROL CWE-284
A vulnerability exists in SCADAPack 7x Remote Connect (V3.6.3.574 and prior) which allows an attacker to place executables in a specific folder and run code whenever RemoteConnect is executed by the user.
Risk Information
- CVE ID
- CVE-2020-7531
- Vendor
- Schneider Electric
- Product
- SCADAPack
- CVSS v3
- 7.8