CVE-2023-3953: Schneider Electric Pro-Face Gp-Pro Ex
Medium severity, CVSS 5.3. EPSS: 0.2% chance of exploitation in the next 30 days.
A CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability exists that could cause memory corruption when an authenticated user opens a tampered log file from GP-Pro EX.
Affected products
- Schneider Electric Pro-Face Gp-Pro Ex: before 4.09.500 (fixed in 4.09.500)
Published 2023-08-09. Last modified 2026-06-17.