Vulnerabilities > SE

DATE CVE VULNERABILITY TITLE RISK
2023-07-12 CVE-2023-37200 XXE vulnerability in SE Ecostruxure OPC UA Server Expert 2.01
A CWE-611: Improper Restriction of XML External Entity Reference vulnerability exists that could cause loss of confidentiality when replacing a project file on the local filesystem and after manual restart of the server.
local
low complexity
se CWE-611
5.5
2020-06-16 CVE-2020-7496 Argument Injection or Modification vulnerability in SE Ecostruxure Operator Terminal Expert 3.1
A CWE-88: Argument Injection or Modification vulnerability exists in EcoStruxure Operator Terminal Expert 3.1 Service Pack 1 and prior (formerly known as Vijeo XD)which could cause unauthorized write access when opening the project file.
network
se CWE-88
6.8