cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-0595,https://securityvulnerability.io/vulnerability/CVE-2023-0595,Improper Log Output Neutralization Vulnerability in EcoStruxure Geo SCADA by Schneider Electric,"A vulnerability exists in EcoStruxure Geo SCADA and ClearSCADA products that allows improper output neutralization for log files. This flaw could enable the misinterpretation of log entries due to the processing of malicious packets sent to the database web port, typically at port 443. Exploitation of this vulnerability could result in significant security risks, as it may allow unauthorized access or manipulation of the log contents, impacting operational integrity and confidentiality.",Schneider Electric,"Ecostruxure Geo Scada Expert 2019,Ecostruxure Geo Scada Expert 2020,Ecostruxure Geo Scada Expert 2021,Clearscada",5.3,MEDIUM,0.0005600000149570405,false,,false,false,false,,,false,false,,2023-02-24T00:00:00.000Z,0 CVE-2023-22610,https://securityvulnerability.io/vulnerability/CVE-2023-22610,Incorrect Authorization Vulnerability in Geo SCADA Server by Schneider Electric,"An Incorrect Authorization vulnerability exists within the Geo SCADA server, potentially leading to a Denial of Service condition. When specific malicious messages are directed at the server's database server TCP port, it can trigger disruptions, impacting the availability and reliability of the Geo SCADA services. Organizations using the affected versions are advised to apply the necessary patches to safeguard against potential exploitation.",Schneider Electric,Ecostruxure Geo Scada Expert 2019 - 2021 (formerly Known As Clearscada),9.1,CRITICAL,0.0008900000248104334,false,,false,false,false,,,false,false,,2023-01-31T00:00:00.000Z,0 CVE-2023-22611,https://securityvulnerability.io/vulnerability/CVE-2023-22611,Sensitive Information Exposure in EcoStruxure Geo SCADA Expert by Schneider Electric,"A vulnerability exists that could lead to information disclosure when specific messages are sent to the server via the database server TCP port. This exposure can occur in versions of EcoStruxure Geo SCADA Expert prior to October 2022, posing a risk of sensitive data being accessed by unauthorized users. Organizations using these versions should consider implementing security measures to mitigate the risk associated with this vulnerability.",Schneider Electric,Ecostruxure Geo Scada Expert 2019 - 2021 (formerly Known As Clearscada),7.5,HIGH,0.0019600000232458115,false,,false,false,false,,,false,false,,2023-01-31T00:00:00.000Z,0