An Improper Handling of Unicode Encoding vulnerability in the Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet Software…
SEL·CWE-176·Published 2023-08-31
An Improper Handling of Unicode Encoding vulnerability in the Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet Software could allow an attacker to embed instructions that could be executed by an authorized device operator. See Instruction Manual Appendix A and Appendix E dated 20230615 for more details. This issue affects SEL-5030 acSELerator QuickSet Software: through 7.1.3.0.
An Improper Handling of Unicode Encoding vulnerability in the Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet Software could allow an attacker to embed instructions that could be executed by an authorized device operator. See Instruction Manual Appendix A and Appendix E dated 20230615 for more details. This issue affects SEL-5030 acSELerator QuickSet Software: through 7.1.3.0.
Una vulnerabilidad de manejo inadecuado de la codificación Unicode en el software Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet podría permitir a un atacante incrustar instrucciones que podrían ser ejecutadas por un operador de dispositivo autorizado. Consulte el Apéndice A y el Apéndice E del Manual de Instrucciones con fecha 20230615 para más detalles. Este problema afecta al software SEL-5030 acSELerator QuickSet: hasta la versión 7.1.3.0.
| Version | Type | Source | Base | Exp | Impact | Vector |
|---|---|---|---|---|---|---|
| 3.1 | Primary | NVD | 5.7 | 2.1 | 3.6 | CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:N |
| 3.1 | Primary | cve.org | 4.8 | — | — | CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N |
| 3.1 | Secondary | NVD | 4.8 | 1.2 | 3.6 | CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N |