CVE-2024-2602

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
11/07/2024
Last modified:
12/07/2024

Description

CWE-22: Improper Limitation of a Pathname to a Restricted Directory (&amp;#39;Path<br /> Traversal&amp;#39;) vulnerability exists that could result in remote code execution when an authenticated<br /> user executes a saved project file that has been tampered by a malicious actor.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:schneider-electric:foxrtu_station:*:*:*:*:*:*:*:* 9.3.0 (excluding)