Vulnerabilities > CVE-2018-7815 - Incorrect Type Conversion or Cast vulnerability in Schneider-Electric Guicon 2.0

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
schneider-electric
CWE-704

Summary

A Type Confusion (CWE-843) vulnerability exists in Eurotherm by Schneider Electric GUIcon V2.0 (Gold Build 683.0) on c3core.dll which could cause remote code to be executed when parsing a GD1 file

Vulnerable Configurations

Part Description Count
Application
Schneider-Electric
1

Common Weakness Enumeration (CWE)