CVE-2018-7841
CISA 기관 조치 기한: 2022-05-06
Schneider Electric U.motion Builder
Qualys 위협 인텔 · 심각도 5/5 · QID 731895 · CGI
공개 익스플로잇
쉬운 악용
패치 없음
웜 전파
인증 불필요
원격코드실행
CISA KEV
A SQL Injection vulnerability exists in U.motion Builder software which could cause unwanted code execution when an improper set of characters is entered.
KEV 필수 조치: The impacted product is end-of-life and should be disconnected if still in use.
공개 익스플로잇 / PoC
- Exploit-DB: EDB-46846 ↗