A vulnerability has been identified in SIMARIS configuration (All versions < V4.0.1). During installation to default target folder, incorrect permissions are configured for the application folder and subfolders which could allow an attacker to gain persistence or potentially escalate privileges should a user with elevated credentials log onto the machine.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2021-02-09T15:38:20
Updated: 2024-08-04T16:33:59.083Z
Reserved: 2020-11-10T00:00:00
Link: CVE-2020-28392
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-02-09T18:15:42.387
Modified: 2024-11-21T05:22:42.610
Link: CVE-2020-28392
Redhat
No data.