CVE-2023-5630

A CWE-494: Download of Code Without Integrity Check vulnerability exists that could allow a privileged user to install an untrusted firmware.

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:schneider-electric:eb450_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:eb450:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:schneider-electric:eb45e_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:eb45e:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:schneider-electric:eh450_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:eh450:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:schneider-electric:eh45e_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:eh45e:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:schneider-electric:er450_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:er450:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:schneider-electric:er45e_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:er45e:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:schneider-electric:jr240_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:jr240:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:schneider-electric:jr900_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:jr900:-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:schneider-electric:qr450_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qr450:-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:schneider-electric:qr150_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qr150:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:schneider-electric:qb450_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qb450:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:schneider-electric:qb150_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qb150:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:schneider-electric:qp450_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qp450:-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:schneider-electric:qp150_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qp150:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:schneider-electric:qh450_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qh450:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:schneider-electric:qh150_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:qh150:-:*:*:*:*:*:*:*

History

21 Nov 2024, 08:42

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 4.9
v2 : unknown
v3 : 6.5
References () https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-346-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-346-01.pdf - Vendor Advisory () https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2023-346-01&p_enDocType=Security+and+Safety+Notice&p_File_Name=SEVD-2023-346-01.pdf - Vendor Advisory