IM
IronMonkey Threat Research

CVE-2020-7520 MEDIUM

Published: 2020-07-23 | Last Modified: 2024-11-21 | Status: Modified

Description

A CWE-601: URL Redirection to Untrusted Site ('Open Redirect') vulnerability exists in Schneider Electric Software Update (SESU), V2.4.0 and prior, which could cause execution of malicious code on the victim's machine. In order to exploit this vulnerability, an attacker requires privileged access on the engineering workstation to modify a Windows registry key which would divert all traffic updates to go through a server in the attacker's possession. A man-in-the-middle attack is then used to complete the exploit.

Additional Descriptions (1)

CWE-601: Se presenta una vulnerabilidad de Redireccionamiento de URL a un Sitio no Confiable ("Open Redirect") en Schneider Electric Software Update (SESU), versiones V2.4.0 y anteriores, lo que podría causar una ejecución de código malicioso en la máquina de la víctima. A fin de explotar esta vulnerabilidad, un atacante requiere acceso privilegiado sobre la estación de trabajo de ingeniería para modificar una clave de registro de Windows que desviaría todas las actualizaciones de tráfico para pasar a través de un servidor en posesión del atacante. Un ataque man-in-the-middle es usado para completar la explotación

CVSS Metrics

Base Score: 4.7 (MEDIUM)

CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N

Attack VectorNETWORK
Attack ComplexityHIGH
Privileges RequiredNONE
User InteractionREQUIRED
ScopeCHANGED
Confidentiality ImpactLOW
Integrity ImpactLOW
Availability ImpactNONE

Source: [email protected]

Type: Primary

Exploitability Score: 1.6

Impact Score: 2.7

Base Score: 4.0 (MEDIUM)

AV:N/AC:H/Au:N/C:P/I:P/A:N

Access VectorNETWORK
Access ComplexityHIGH
AuthenticationNONE
Confidentiality ImpactPARTIAL
Integrity ImpactPARTIAL
Availability ImpactNONE

Source: [email protected]

Type: Primary

Exploitability Score: 4.9

Impact Score: 4.9

Weaknesses

Source Type Description
[email protected] Secondary
en CWE-601
[email protected] Primary
en CWE-601

Affected Products

Vendor Product Version Update Type
schneider-electric software_update_utility * <built-in method update of dict object at 0x7e60e846da00> Application

Affected Configurations

Operator: OR

Vulnerable CPE
Yes cpe:2.3:a:schneider-electric:software_update_utility:*:*:*:*:*:*:*:*

References

Notification
Message here