A vulnerability has been identified in SINEC NMS (All versions < V2.0). The affected application assigns improper access rights to specific folders containing executable files and libraries.
This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-160243.pdf | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: siemens
Published: 2023-10-10T10:20:55.760Z
Updated: 2024-07-09T12:04:05.773Z
Reserved: 2022-05-10T11:11:17.909Z
Link: CVE-2022-30527
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-10-10T11:15:10.603
Modified: 2023-10-16T18:51:21.610
Link: CVE-2022-30527
JSON object: View
Redhat Information
No data.
CWE