Vulnerabilities > Schneider Electric > Unity PRO > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-12-11 CVE-2020-7560 Write-what-where Condition vulnerability in Schneider-Electric Ecostruxure Control Expert and Unity PRO
A CWE-123: Write-what-where Condition vulnerability exists in EcoStruxure™ Control Expert (all versions) and Unity Pro (former name of EcoStruxure™ Control Expert) (all versions), that could cause a crash of the software or unexpected code execution when opening a malicious file in EcoStruxure™ Control Expert software.
6.8
2017-02-13 CVE-2016-8354 Code Injection vulnerability in Schneider-Electric Unity PRO 11.0/6.0/7.0
An issue was discovered in Schneider Electric Unity PRO prior to V11.1.
network
high complexity
schneider-electric CWE-94
5.1