CVE-2014-5413: Aveva Clearscada
Medium severity, CVSS 5.0. EPSS: 1% chance of exploitation in the next 30 days.
Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 uses the MD5 algorithm for an X.509 certificate, which makes it easier for remote attackers to spoof servers via a cryptographic attack against this algorithm.
Affected products
- Aveva Clearscada: version 2010 only; version 2013 only
- Schneider Electric Scada Expert Clearscada: version 2013 only; version 2014 only
Published 2014-09-18. Last modified 2026-06-17.