Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rq5m-jv7g-wwv9

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows remote authenticated attackers, and possibly anonymous users, to execute arbitrary programs.

Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows remote authenticated attackers, and possibly anonymous users, to execute arbitrary programs.

EPSS

Процентиль: 87%
0.03193
Низкий

8.8 High

CVSS3

Дефекты

CWE-732

Связанные уязвимости

CVSS3: 8.8
nvd
около 18 лет назад

Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows remote authenticated attackers, and possibly anonymous users, to execute arbitrary programs.

EPSS

Процентиль: 87%
0.03193
Низкий

8.8 High

CVSS3

Дефекты

CWE-732