Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Schneider Electric SoMachine Basic 1.4 SP1 and Schneider Electric Modicon TM221CE16R 1.3.3.3 devices have a hardcoded-key vulnerability. The Project Protection feature is used to prevent unauthorized users from opening an XML protected project file, by prompting the user for a password. This XML file is AES-CBC encrypted; however, the key used for encryption (SoMachineBasicSoMachineBasicSoMa) cannot be changed. After decrypting the XML file with this key, the user password can be found in the decrypted data. After reading the user password, the project can be opened and modified with the Schneider product.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Schneider Electric SoMachine Basic和Schneider Electric Modicon TM221CE16R 安全漏洞
Vulnerability Description
Schneider Electric SoMachine Basic和Schneider Electric Modicon TM221CE16R都是法国施耐德电气(Schneider Electric)公司的产品。前者是一款用于在控制平台上完成所有元器件的编程、调试界面;后者是一款可编程控制器。 Schneider Electric SoMachine Basic 1.4 SP1版本和Schneider Electric Modicon TM221CE16R 1.3.3.3版本中存在安全漏洞,该漏洞源于程
CVSS Information
N/A
Vulnerability Type
N/A