Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3jmp-h6jj-v2fx

Опубликовано: 24 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects ABB Ability™ zenon: from 11 build through 11 build 106404.

A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects ABB Ability™ zenon: from 11 build through 11 build 106404.

EPSS

Процентиль: 39%
0.00176
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 5.9
nvd
больше 2 лет назад

A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects ABB Ability™ zenon: from 11 build through 11 build 106404.

CVSS3: 6.3
fstec
больше 2 лет назад

Уязвимость программной платформы управления операционными данными для оптимизации производства ABB Ability zenon, связанная с ошибками использования стандартных разрешений, позволяющая нарушителю читать и обновлять произвольные данные в различных каталогах системы

EPSS

Процентиль: 39%
0.00176
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-276