Vulnerabilities > Schneider Electric > Ime119 1ES Firmware > High

DATE CVE VULNERABILITY TITLE RISK
2019-05-22 CVE-2018-7829 Improper Neutralization of Special Elements in Data Query Logic vulnerability in Schneider-Electric products
An Improper Neutralization of Special Elements in Query vulnerability exists in the 1st Gen.
network
low complexity
schneider-electric CWE-943
8.8
2019-05-22 CVE-2018-7828 Cross-Site Request Forgery (CSRF) vulnerability in Schneider-Electric products
A Cross-Site Request Forgery (CSRF) vulnerability exists in the 1st Gen.
network
low complexity
schneider-electric CWE-352
8.8
2019-05-22 CVE-2018-7826 Command Injection vulnerability in Schneider-Electric products
A Command Injection vulnerability exists in the web-based GUI of the 1st Gen Pelco Sarix Enhanced Camera that could allow a remote attacker to execute arbitrary commands.
network
low complexity
schneider-electric CWE-77
8.8
2019-05-22 CVE-2018-7825 Command Injection vulnerability in Schneider-Electric products
A Command Injection vulnerability exists in the web-based GUI of the 1st Gen PelcoSarix Enhanced Camera that could allow a remote attacker to execute arbitrary commands.
network
low complexity
schneider-electric CWE-77
8.8