CWE-93 Improper Neutralization of CRLF Sequences ('CRLF Injection') vulnerability exists that could cause application user credentials to reset when a Web Admin user alters the POST /setPCBEDesc request payload.
References
Configurations
History
No history.
Information
Published : 2026-04-14 16:16
Updated : 2026-06-17 10:30
NVD link : CVE-2026-2400
Mitre link : CVE-2026-2400
CVE.ORG link : CVE-2026-2400
JSON object : View
Products Affected
schneider-electric
- powerchute_serial_shutdown
CWE
CWE-93
Improper Neutralization of CRLF Sequences ('CRLF Injection')
