PT-2019-5950 · Schneider Electric · Spacelynk+1

Published

2019-09-17

·

Updated

2022-09-03

·

CVE-2019-6832

CVSS v2.0

9.0

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:P
Name of the Vulnerable Software and Affected Versions Schneider Electric spaceLYnk versions prior to 2.4.0 Schneider Electric homeLYnk versions prior to 2.4.0
Description The issue is related to errors in using standard permissions, which could allow a remote attacker to bypass the authentication procedure. This may lead to a loss of control.
Recommendations For Schneider Electric spaceLYnk versions prior to 2.4.0, update to version 2.4.0 or later. For Schneider Electric homeLYnk versions prior to 2.4.0, update to version 2.4.0 or later.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

BDU:2021-03842
CVE-2019-6832

Affected Products

Homelynk
Spacelynk