Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fwv4-f9xf-wp89

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Symphony Plus Operations and Symphony Plus Historian, some services can be vulnerable to privilege escalation attacks. An unprivileged (but authenticated) user could execute arbitrary code and result in privilege escalation, depending on the user that the service runs as.

In Symphony Plus Operations and Symphony Plus Historian, some services can be vulnerable to privilege escalation attacks. An unprivileged (but authenticated) user could execute arbitrary code and result in privilege escalation, depending on the user that the service runs as.

EPSS

Процентиль: 13%
0.00042
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
nvd
около 5 лет назад

In Symphony Plus Operations and Symphony Plus Historian, some services can be vulnerable to privilege escalation attacks. An unprivileged (but authenticated) user could execute arbitrary code and result in privilege escalation, depending on the user that the service runs as.

EPSS

Процентиль: 13%
0.00042
Низкий

Дефекты

CWE-269