CVE-2018-7787
CVE-2018-7787
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
03 Jul 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In Schneider Electric U.motion Builder software versions prior to v1.3.4, this vulnerability is due to improper validation of input of context parameter in HTTP GET request.
Affected products
Schneider Electric SE · U.motion BuilderWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →