Description
A DLL Hijack issue was discovered in Rockwell Automation Connected Components Workbench (CCW). The following versions are affected: Connected Components Workbench - Developer Edition, v9.01.00 and earlier: 9328-CCWDEVENE, 9328-CCWDEVZHE, 9328-CCWDEVFRE, 9328-CCWDEVITE, 9328-CCWDEVDEE, 9328-CCWDEVESE, and 9328-CCWDEVPTE; and Connected Components Workbench - Free Standard Edition (All Supported Languages), v9.01.00 and earlier. Certain DLLs included with versions of CCW software can be potentially hijacked to allow an attacker to gain rights to a victim's affected personal computer. Such access rights can be at the same or potentially higher level of privileges as the compromised user account, including and up to computer administrator privileges.
Published: 2017-05-19
Score: 7.0 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Rockwellautomation 9328-ccwdevdee 9328-ccwdevene 9328-ccwdevese 9328-ccwdevfre 9328-ccwdevite 9328-ccwdevpte 9328-ccwdevzhe Connected Components Workbench
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-05T14:55:35.738Z

Reserved: 2017-01-03T00:00:00.000Z

Link: CVE-2017-5176

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-05-19T03:29:00.293

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-5176

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses