In Symphony Plus Operations and Symphony Plus Historian, some services can be vulnerable to privilege escalation attacks. An unprivileged (but authenticated) user could execute arbitrary code and result in privilege escalation, depending on the user that the service runs as.
Metrics
Affected Vendors & Products
References
History
Mon, 16 Sep 2024 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | Insecure Windows Services in Symphony Plus | Insecure Windows Services in Symphony Plus |
MITRE
Status: PUBLISHED
Assigner: ABB
Published: 2020-12-22T21:15:22.929934Z
Updated: 2024-09-16T21:57:54.934Z
Reserved: 2020-08-26T00:00:00
Link: CVE-2020-24676
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-12-22T22:15:13.333
Modified: 2024-11-21T05:15:42.043
Link: CVE-2020-24676
Redhat
No data.