SEL-5037 Grid Configurator Cross-Origin Resource Sharing Vulnerability

Vulnerability

A vulnerability exists in the SEL-5037 Grid Configurator due to an overly permissive Cross-Origin Resource Sharing (CORS) configuration. This flaw affects a data gateway service within the application, allowing the API to accept requests from unexpected sources without proper validation.

Impact

This vulnerability could lead to unauthorized access or manipulation of resources by allowing requests from untrusted origins to be accepted by the application's API.

Remediation

Users can update to the latest version of SEL-5037 Grid Configurator, which addresses this CORS vulnerability. The updated version can be downloaded from the SEL Grid Configurator product page on the SEL website.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
0.0
exploitability
4.7
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.