Описание
A privilege escalation vulnerability exists in Schneider Electric's Pelco VideoXpert Enterprise versions 2.0 and prior. By replacing certain files, an unauthorized user can obtain system privileges and the inserted code would execute at an elevated privilege level.
Ссылки
- Third Party AdvisoryVDB Entry
- PatchThird Party AdvisoryUS Government Resource
- Third Party AdvisoryVDB Entry
- PatchThird Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 2.1 (исключая)
cpe:2.3:a:schneider-electric:pelco_videoxpert:*:*:*:*:enterprise:*:*:*
EPSS
Процентиль: 67%
0.00529
Низкий
7.1 High
CVSS3
7.1 High
CVSS2
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
CVSS3: 7.1
github
больше 3 лет назад
A privilege escalation vulnerability exists in Schneider Electric's Pelco VideoXpert Enterprise versions 2.0 and prior. By replacing certain files, an unauthorized user can obtain system privileges and the inserted code would execute at an elevated privilege level.
EPSS
Процентиль: 67%
0.00529
Низкий
7.1 High
CVSS3
7.1 High
CVSS2
Дефекты
NVD-CWE-noinfo