// For flags

CVE-2023-5630

 

Severity Score

4.9
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A CWE-494: Download of Code Without Integrity Check vulnerability exists that could allow a
privileged user to install an untrusted firmware.

Existe una vulnerabilidad CWE-494: Descarga de código sin verificación de integridad que podría permitir a un usuario privilegiado instalar un firmware que no es de confianza.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
None
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2023-10-18 CVE Reserved
  • 2023-12-14 CVE Published
  • 2024-08-02 CVE Updated
  • 2024-11-13 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-494: Download of Code Without Integrity Check
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Schneider-electric
Search vendor "Schneider-electric"
Eb450 Firmware
Search vendor "Schneider-electric" for product "Eb450 Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Eb450
Search vendor "Schneider-electric" for product "Eb450"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Eb45e Firmware
Search vendor "Schneider-electric" for product "Eb45e Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Eb45e
Search vendor "Schneider-electric" for product "Eb45e"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Eh450 Firmware
Search vendor "Schneider-electric" for product "Eh450 Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Eh450
Search vendor "Schneider-electric" for product "Eh450"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Eh45e Firmware
Search vendor "Schneider-electric" for product "Eh45e Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Eh45e
Search vendor "Schneider-electric" for product "Eh45e"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Er450 Firmware
Search vendor "Schneider-electric" for product "Er450 Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Er450
Search vendor "Schneider-electric" for product "Er450"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Er45e Firmware
Search vendor "Schneider-electric" for product "Er45e Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Er45e
Search vendor "Schneider-electric" for product "Er45e"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Jr240 Firmware
Search vendor "Schneider-electric" for product "Jr240 Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Jr240
Search vendor "Schneider-electric" for product "Jr240"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Jr900 Firmware
Search vendor "Schneider-electric" for product "Jr900 Firmware"
--
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Jr900
Search vendor "Schneider-electric" for product "Jr900"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qr450 Firmware
Search vendor "Schneider-electric" for product "Qr450 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qr450 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qr450
Search vendor "Schneider-electric" for product "Qr450"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qr150 Firmware
Search vendor "Schneider-electric" for product "Qr150 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qr150 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qr150
Search vendor "Schneider-electric" for product "Qr150"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qb450 Firmware
Search vendor "Schneider-electric" for product "Qb450 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qb450 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qb450
Search vendor "Schneider-electric" for product "Qb450"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qb150 Firmware
Search vendor "Schneider-electric" for product "Qb150 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qb150 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qb150
Search vendor "Schneider-electric" for product "Qb150"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qp450 Firmware
Search vendor "Schneider-electric" for product "Qp450 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qp450 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qp450
Search vendor "Schneider-electric" for product "Qp450"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qp150 Firmware
Search vendor "Schneider-electric" for product "Qp150 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qp150 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qp150
Search vendor "Schneider-electric" for product "Qp150"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qh450 Firmware
Search vendor "Schneider-electric" for product "Qh450 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qh450 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qh450
Search vendor "Schneider-electric" for product "Qh450"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Qh150 Firmware
Search vendor "Schneider-electric" for product "Qh150 Firmware"
< 2.7.0
Search vendor "Schneider-electric" for product "Qh150 Firmware" and version " < 2.7.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Qh150
Search vendor "Schneider-electric" for product "Qh150"
--
Safe