Описание
A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application does not properly restrict permissions of the users. This could allow a lowly-privileged attacker to escalate their privileges.
EPSS
Процентиль: 4%
0.0014
Низкий
6.7 Medium
CVSS3
Дефекты
CWE-295
Связанные уязвимости
CVSS3: 6.7
github
больше 1 года назад
A vulnerability has been identified in Siemens License Server (SLS) (All versions < V4.3). The affected application does not properly restrict permissions of the users. This could allow a lowly-privileged attacker to escalate their privileges.
CVSS3: 6.7
fstec
больше 1 года назад
Уязвимость программного средства управления лицензиями Siemens License Server (SLS), связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю повысить свои привилегии
EPSS
Процентиль: 4%
0.0014
Низкий
6.7 Medium
CVSS3
Дефекты
CWE-295