Описание
An Uncontrolled Search Path Element issue was discovered in BLF-Tech LLC VisualView HMI Version 9.9.14.0 and prior. The uncontrolled search path element vulnerability has been identified, which may allow an attacker to run a malicious DLL file within the search path resulting in execution of arbitrary code.
Ссылки
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 9.9.14.0 (включая)
cpe:2.3:a:blftech:visualview_hmi:*:*:*:*:*:*:*:*
EPSS
Процентиль: 49%
0.00257
Низкий
7 High
CVSS3
5.1 Medium
CVSS2
Дефекты
CWE-427
CWE-427
Связанные уязвимости
CVSS3: 7
github
больше 3 лет назад
An Uncontrolled Search Path Element issue was discovered in BLF-Tech LLC VisualView HMI Version 9.9.14.0 and prior. The uncontrolled search path element vulnerability has been identified, which may allow an attacker to run a malicious DLL file within the search path resulting in execution of arbitrary code.
EPSS
Процентиль: 49%
0.00257
Низкий
7 High
CVSS3
5.1 Medium
CVSS2
Дефекты
CWE-427
CWE-427