CVE-2023-31172 Information

Description

An Incomplete Filtering of Special Elements vulnerability in the Schweitzer Engineering Laboratories SEL-5030 acSELerator QuickSet Software could allow an attacker to embed instructions that could be executed by an authorized device operator.

See Instruction Manual Appendix A and Appendix E dated 20230615 for more details.

This issue affects SEL-5030 acSELerator QuickSet Software: through 7.1.3.0.

Reference

https://selinc.com/support/security-notifications/external-reports/ https://www.nozominetworks.com/blog/

Share on: