CVE-2023-30897

CVSS V2 None CVSS V3 None
Description
A vulnerability has been identified in SIMATIC WinCC (All versions < V7.5.2.13). Affected applications fail to set proper access rights for their installation folder if a non-default installation path was chosen during installation. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.
Overview
  • CVE ID
  • CVE-2023-30897
  • Assigner
  • siemens
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-06-13T08:17:11.223Z
  • Last Modified Date
  • 2023-06-13T08:17:11.223Z
References
History
Created Old Value New Value Data Type Notes
2024-06-25 17:04:59 Added to TrackCVE