A vulnerability has been identified in SIMATIC WinCC (All versions < V7.5.2.13). Affected applications fail to set proper access rights for their installation folder if a non-default installation path was chosen during installation.
This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2023-06-13T08:17:11.223Z
Updated: 2024-08-02T14:37:15.531Z
Reserved: 2023-04-20T05:09:40.252Z
Link: CVE-2023-30897
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-06-13T09:15:17.703
Modified: 2024-11-21T08:01:01.513
Link: CVE-2023-30897
Redhat
No data.