The vendor explicitly identifies these products as affected by this CVE.
- Schneider Electric Conext™ Advisor 2 Cloud 2.02 and below
- Schneider Electric Conext™ Advisor 2 Gateway 1.28.45 and below
- Schneider Electric Conext™ Control V2 Gateway 2.6 and below
- Summary
- A remote code execution vulnerability exists in Windows Remote Desktop Gateway (RD Gateway) when an unauthenticated attacker connects to the target system using RDP and sends specially crafted requests, aka 'Windows Remote Desktop Gateway (RD Gateway) Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0610.
- Remediation
- Version Windows 10 of the Microsoft Windows includes a fix for this vulnerability and is available for download here: • https://www.microsoft.com/en-in/software-download/windows10 • Reboot is required
