← volver
CVE-2023-3323

Code Execution through overwriting project file on zenon engineering studio system

CVSS 5.9 MEDIUMEPSS 0.3%CWE-276
Vexday Risk Score
13Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 5.9EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch
Ciclo de vida
24 jul 2023Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
A vulnerability exists by allowing low-privileged users to read and update the data in various directories used by the Zenon system. An attacker could exploit the vulnerability by using specially crafted programs to exploit the vulnerabilities by allowing them to run on the zenon installed hosts. This issue affects ABB Ability™ zenon: from 11 build through 11 build 106404.
CVSS:3.1/AV:P/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H
Productos afectados
ABB · ABB Ability™ zenon

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →