← Back to home
ICSA-19-190-03  ·  Published 2019-07-09  ·  View on CISA ICS-CERT ↗

Schneider Electric Zelio Soft 2

CVSS 7.8 HIGH

Risk Summary

Successful exploitation of this vulnerability could allow remote code execution through the opening of a specially crafted project file.

CVEs (1)

Remediations

  • Schneider Electric reports that version 5.3 of the affected software mitigates the reported vulnerability. The new version can be downloaded from: https://www.schneider-electric.com/en/download/document/ZelioSoft2_V5_3/

Affected Vendors

Schneider Electric Software, LLC

Affected Products (1)

Schneider Electric Software, LLC · Zelio Soft 2 <= 5.2

Affected Sectors

Critical Manufacturing

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more