Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC does not specify the path of multiple imported .dll files. Therefore, an attacker can replace them and execute code whenever the service starts.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-20-135-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2020-05-14T20:36:36
Updated: 2024-08-04T11:06:10.160Z
Reserved: 2020-03-16T00:00:00
Link: CVE-2020-10616
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-05-14T21:15:12.930
Modified: 2024-11-21T04:55:42.357
Link: CVE-2020-10616
Redhat
No data.