Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x29x-qf6c-w9cj

Опубликовано: 15 апр. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.5
CVSS3: 7.8

Описание

A privilege escalation vulnerability exists in the Rockwell Automation ThinManager. When the software starts up, files are deleted in the temporary folder causing the Access Control Entry of the directory to inherit permissions from the parent directory. If exploited, a threat actor could inherit elevated privileges.

A privilege escalation vulnerability exists in the Rockwell Automation ThinManager. When the software starts up, files are deleted in the temporary folder causing the Access Control Entry of the directory to inherit permissions from the parent directory. If exploited, a threat actor could inherit elevated privileges.

EPSS

Процентиль: 3%
0.00017
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 7.8
nvd
10 месяцев назад

A privilege escalation vulnerability exists in the Rockwell Automation ThinManager. When the software starts up, files are deleted in the temporary folder causing the Access Control Entry of the directory to inherit permissions from the parent directory. If exploited, a threat actor could inherit elevated privileges.

EPSS

Процентиль: 3%
0.00017
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-276