cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-29411,https://securityvulnerability.io/vulnerability/CVE-2023-29411,Missing Authentication Vulnerability in Java RMI Interface by Schneider Electric,"A vulnerability exists in Schneider Electric's Java RMI interface, where missing authentication may allow unauthorized changes to administrative credentials. This flaw could potentially enable remote code execution, posing a significant risk as no prior authentication is required for exploitation.",Schneider Electric,"Apc Easy Ups Online Monitoring Software (windows 10, 11 Windows Server 2016, 2019, 2022),Schneider Electric Easy Ups Online Monitoring Software (windows 10, 11 Windows Server 2016, 2019, 2022)",9.8,CRITICAL,0.0021800000686198473,false,,false,false,false,,,false,false,,2023-04-18T21:15:00.000Z,0 CVE-2023-29412,https://securityvulnerability.io/vulnerability/CVE-2023-29412,OS Command Injection Vulnerability in Schneider Electric’s Java RMI Interface,"An OS Command Injection vulnerability exists in the Java RMI interface of affected Schneider Electric products. This flaw could allow an attacker to manipulate internal methods, leading to potential remote code execution. Proper neutralization of special elements is essential to prevent abuse of this vulnerability, which may expose systems to unauthorized control and actions.",Schneider Electric,"Apc Easy Ups Online Monitoring Software (windows 10, 11 Windows Server 2016, 2019, 2022),Schneider Electric Easy Ups Online Monitoring Software (windows 10, 11 Windows Server 2016, 2019, 2022)",9.8,CRITICAL,0.0015399999683722854,false,,false,false,false,,,false,false,,2023-04-18T21:15:00.000Z,0 CVE-2023-29413,https://securityvulnerability.io/vulnerability/CVE-2023-29413,Missing Authentication Vulnerability in Schneider UPS Monitor Service,"The Schneider UPS Monitor service is affected by a missing authentication vulnerability that allows unauthenticated users to access critical functions. This can lead to a potential Denial-of-Service (DoS) condition, where vital operations of the UPS Monitor could be interrupted or rendered inaccessible. It is essential for users to update their systems and implement proper authentication protocols to mitigate these risks and protect their infrastructure from unauthorized access.",Schneider Electric,"Apc Easy Ups Online Monitoring Software (windows 10, 11 Windows Server 2016, 2019, 2022),Schneider Electric Easy Ups Online Monitoring Software (windows 10, 11 Windows Server 2016, 2019, 2022)",7.5,HIGH,0.0010300000431016088,false,,false,false,false,,,false,false,,2023-04-18T21:15:00.000Z,0