In Symphony Plus Operations and Symphony Plus Historian, some services can be vulnerable to privilege escalation attacks. An unprivileged (but authenticated) user could execute arbitrary code and result in privilege escalation, depending on the user that the service runs as.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-17390 | In Symphony Plus Operations and Symphony Plus Historian, some services can be vulnerable to privilege escalation attacks. An unprivileged (but authenticated) user could execute arbitrary code and result in privilege escalation, depending on the user that the service runs as. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 16 Sep 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Insecure Windows Services in Symphony Plus | Insecure Windows Services in Symphony Plus |
Status: PUBLISHED
Assigner: ABB
Published:
Updated: 2024-09-16T21:57:54.934Z
Reserved: 2020-08-26T00:00:00
Link: CVE-2020-24676
No data.
Status : Modified
Published: 2020-12-22T22:15:13.333
Modified: 2024-11-21T05:15:42.043
Link: CVE-2020-24676
No data.
OpenCVE Enrichment
No data.
EUVD