CVE-2020-7485
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
16/04/2020
Last modified:
01/03/2023
Description
**VERSION NOT SUPPORTED WHEN ASSIGNED** A legacy support account in the TriStation software version v4.9.0 and earlier could cause improper access to the TriStation host machine. This was addressed in TriStation version v4.9.1 and v4.10.1 released on May 30, 2013.1
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:schneider-electric:tristation_1131:*:*:*:*:*:*:*:* | 1.0.0 (including) | 4.9.0 (including) |
| cpe:2.3:a:schneider-electric:tristation_1131:4.10.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:schneider-electric:tristation_1131:4.12.0:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_7:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_nt:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:microsoft:windows_xp:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



