Описание
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The start-stop scripts for the services of the affected application could allow a local attacker to include arbitrary commands that are executed when services are started or stopped interactively by system administrators.
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2.10.2 (исключая)
cpe:2.3:a:siemens:simatic_rtls_locating_manager:*:*:*:*:*:*:*:*
EPSS
Процентиль: 13%
0.00044
Низкий
7.3 High
CVSS3
4.4 Medium
CVSS2
Дефекты
CWE-276
CWE-276
Связанные уязвимости
github
больше 3 лет назад
A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The start-stop scripts for the services of the affected application could allow a local attacker to include arbitrary commands that are executed when services are started or stopped interactively by system administrators.
EPSS
Процентиль: 13%
0.00044
Низкий
7.3 High
CVSS3
4.4 Medium
CVSS2
Дефекты
CWE-276
CWE-276