Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2018-7778

EPSS 0.66% · P71
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2018-7778

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
In Schneider Electric Evlink Charging Station versions prior to v3.2.0-12_v1, the Web Interface has an issue that may allow a remote attacker to gain administrative privileges without properly authenticating remote users.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Schneider Electric Evlink Charging Station 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Schneider Electric Evlink Charging Station是法国施耐德电气(Schneider Electric)公司的一套商用电动汽车充电解决方案。 Schneider Electric Evlink Charging Station 3.2.0-12_v1之前版本中的Web界面存在安全漏洞,该漏洞源于程序没有正确的对远程用户执行身份验证。远程攻击者可利用该漏洞获取管理权限。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
Schneider Electric SEEvlink Charging Station Web Interface, all versions prior to v3.2.0-12_v1 -

II. Public POCs for CVE-2018-7778

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-7778

Please Login to view more intelligence information

Same Patch Batch · Schneider Electric SE · 2018-07-03 · 24 CVEs total

CVE-2018-7774Schneider Electric U.motion Builder软件SQL注入漏洞
CVE-2018-7787Schneider Electric U.motion Builder 输入验证漏洞
CVE-2018-7786Schneider Electric U.motion Builder 跨站脚本漏洞
CVE-2018-7785Schneider Electric U.motion Builder 操作系统命令注入漏洞
CVE-2018-7784Schneider Electric U.motion Builder 缓冲区错误漏洞
CVE-2018-7783Schneider Electric SoMachine Basic 安全漏洞
CVE-2018-7782Schneider Electric Pelco Sarix Professional 1st generation cameras 安全漏洞
CVE-2018-7781Schneider Electric Pelco Sarix Professional 1st generation cameras 安全漏洞
CVE-2018-7780Schneider Electric Pelco Sarix Professional 1st generation cameras 缓冲区错误漏洞
CVE-2018-7779Schneider Electric Wiser for KNX、homeLYnk和spaceLYnk 权限许可和访问控制问题漏洞
CVE-2018-7777Schneider Electric U.motion Builder软件安全漏洞
CVE-2018-7776Schneider Electric U.motion Builder软件安全漏洞
CVE-2018-7763Schneider Electric U.motion Builder软件路径遍历漏洞
CVE-2018-7773Schneider Electric U.motion Builder软件SQL注入漏洞
CVE-2018-7772Schneider Electric U.motion Builder软件SQL注入漏洞
CVE-2018-7771Schneider Electric U.motion Builder软件路径遍历漏洞
CVE-2018-7770Schneider Electric U.motion Builder软件安全漏洞
CVE-2018-7769Schneider Electric U.motion Builder软件安全漏洞
CVE-2018-7768Schneider Electric U.motion Builder软件SQL注入漏洞
CVE-2018-7767Schneider Electric U.motion Builder软件SQL注入漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2018-7778

No comments yet


Leave a comment