Vulnerabilities > Schneider Electric > Evlink Parking Firmware

DATE CVE VULNERABILITY TITLE RISK
2018-12-24 CVE-2018-7802 SQL Injection vulnerability in Schneider-Electric Evlink Parking Firmware 3.1.133/3.2.012
A SQL Injection vulnerability exists in EVLink Parking, v3.2.0-12_v1 and earlier, which could give access to the web interface with full privileges.
network
low complexity
schneider-electric CWE-89
8.8
2018-12-24 CVE-2018-7801 Code Injection vulnerability in Schneider-Electric Evlink Parking Firmware 3.1.133/3.2.012
A Code Injection vulnerability exists in EVLink Parking, v3.2.0-12_v1 and earlier, which could enable access with maximum privileges when a remote code execution is performed.
network
low complexity
schneider-electric CWE-94
8.8
2018-12-24 CVE-2018-7800 Use of Hard-coded Credentials vulnerability in Schneider-Electric Evlink Parking Firmware 3.1.133/3.2.012
A Hard-coded Credentials vulnerability exists in EVLink Parking, v3.2.0-12_v1 and earlier, which could enable an attacker to gain access to the device.
network
low complexity
schneider-electric CWE-798
critical
9.8