AdvaBuild uses a command queue to launch certain operations. An attacker who gains access to the command queue can use it to launch an attack by running any executable on the AdvaBuild node. The executables that can be run are not limited to AdvaBuild specific executables.  Improper Privilege Management vulnerability in ABB Advant MOD 300 AdvaBuild.This issue affects Advant MOD 300 AdvaBuild: from 3.0 through 3.7 SP2.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: ABB

Published: 2024-07-23T17:36:51.458Z

Updated: 2024-08-04T11:35:13.681Z

Reserved: 2020-04-08T00:00:00.000Z

Link: CVE-2020-11640

cve-icon Vulnrichment

Updated: 2024-08-04T11:35:13.681Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-23T18:15:05.083

Modified: 2024-07-24T12:55:13.223

Link: CVE-2020-11640

cve-icon Redhat

No data.