Vulnerabilities > Schneider Electric > Software Update Utility

DATE CVE VULNERABILITY TITLE RISK
2020-07-23 CVE-2020-7520 Open Redirect vulnerability in Schneider-Electric Software Update Utility
A CWE-601: URL Redirection to Untrusted Site ('Open Redirect') vulnerability exists in Schneider Electric Software Update (SESU), V2.4.0 and prior, which could cause execution of malicious code on the victim's machine.
network
high complexity
schneider-electric CWE-601
4.7
2018-11-02 CVE-2018-7799 Uncontrolled Search Path Element vulnerability in Schneider-Electric Software Update Utility
A DLL hijacking vulnerability exists in Schneider Electric Software Update (SESU), all versions prior to V2.2.0, which could allow an attacker to execute arbitrary code on the targeted system when placing a specific DLL file.
local
low complexity
schneider-electric CWE-427
7.8