CVE-2020-7490

A CWE-426: Untrusted Search Path vulnerability exists in Vijeo Designer Basic (V1.1 HotFix 15 and prior) and Vijeo Designer (V6.9 SP9 and prior), which could cause arbitrary code execution on the system running Vijeo Basic when a malicious DLL library is loaded by the Product.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:schneider-electric:vijeo_designer:*:*:*:*:basic:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:*:*:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:1.1:-:*:*:basic:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:1.1:hotfix_15:*:*:basic:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.9:-:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.9:sp9:*:*:-:*:*:*

History

31 Jan 2022, 19:43

Type Values Removed Values Added
CPE cpe:2.3:a:se:vijeo_designer:6.9:-:*:*:-:*:*:*
cpe:2.3:a:se:vijeo_designer:1.1:hotfix_15:*:*:basic:*:*:*
cpe:2.3:a:se:vijeo_designer:6.9:sp9:*:*:-:*:*:*
cpe:2.3:a:se:vijeo_designer:*:*:*:*:basic:*:*:*
cpe:2.3:a:se:vijeo_designer:*:*:*:*:-:*:*:*
cpe:2.3:a:se:vijeo_designer:1.1:-:*:*:basic:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:*:*:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.9:-:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:1.1:-:*:*:basic:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:6.9:sp9:*:*:-:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:*:*:*:*:basic:*:*:*
cpe:2.3:a:schneider-electric:vijeo_designer:1.1:hotfix_15:*:*:basic:*:*:*

Information

Published : 2020-04-22 19:15

Updated : 2024-02-04 21:00


NVD link : CVE-2020-7490

Mitre link : CVE-2020-7490

CVE.ORG link : CVE-2020-7490


JSON object : View

Products Affected

schneider-electric

  • vijeo_designer
CWE
CWE-426

Untrusted Search Path