Schneider Electric SCADA Expert ClearSCADA Cryptographic Issues
Vulnerability Description
Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 uses the MD5 algorithm for an X.509 certificate, which makes it easier for remote attackers to spoof servers via a cryptographic attack against this algorithm.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-5413
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Aditya Sood
References
More from Schneider Electric
View All →Affected Vendor
Schneider Electric
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.