Description
Untrusted Search Path vulnerability in B&R Industrial Automation GmbH APROL.

This issue affects APROL: before R 4.4-01P5.
Published: 2026-07-06
Score: 8.4 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An untrusted search path vulnerability in B&R Industrial Automation’s APROL software allows a process or application to load and execute an executable that is not fully controlled by the system. The flaw is identified as CWE‑426 and carries a CVSS score of 8.4, indicating that an exploited path could permit the execution of arbitrary code. The vulnerability is limited to the way APROL resolves external binaries, so an attacker who can control the search order or supply a named executable could replace a legitimate binary with a malicious one, thereby potentially gaining the privileges of the running process.

Affected Systems

All installations of APROL from B&R Industrial Automation GmbH that use a release older than R 4.4‑01P5 are vulnerable. Every build preceding this release contains the untrusted search path issue, making any system without the update susceptible to exploitation.

Risk and Exploitability

The severity score signals a high risk, yet the EPSS score of less than 1 % and the absence of a listing in CISA KEV suggest that widespread exploitation is currently unlikely. Exploitation requires an attacker to influence the mediator that APROL uses to locate command executables – for example by placing a malicious file in a directory that APROL scans or by altering certain environment variables. If successful, the attacker can run code with the same permissions as the APROL process, which may lead to privilege escalation or further system compromise.

Generated by OpenCVE AI on July 26, 2026 at 20:36 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade APROL to release R 4.4‑01P5 or later to apply the vendor‑supplied fix for the untrusted search path flaw.
  • If an upgrade cannot be performed immediately, limit the directories that APROL scans for executable files by tightening environment variables that influence its search path.
  • Implement monitoring of process execution to detect unexpected or unauthorized binaries and investigate any such events promptly.

Generated by OpenCVE AI on July 26, 2026 at 20:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 06 Jul 2026 22:45:00 +0000

Type Values Removed Values Added
First Time appeared Br-automation
Br-automation industrial Automation Aprol
Vendors & Products Br-automation
Br-automation industrial Automation Aprol

Mon, 06 Jul 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 06 Jul 2026 10:30:00 +0000

Type Values Removed Values Added
Description Untrusted Search Path vulnerability in B&R Industrial Automation GmbH APROL. This issue affects APROL: before R 4.4-01P5.
Title Untrusted Search Path
Weaknesses CWE-426
References
Metrics cvssV3_1

{'score': 7.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N'}

cvssV4_0

{'score': 8.4, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Br-automation Industrial Automation Aprol
cve-icon MITRE

Status: PUBLISHED

Assigner: ABB

Published:

Updated: 2026-07-06T11:06:28.326Z

Reserved: 2026-04-23T08:26:08.011Z

Link: CVE-2026-6901

cve-icon Vulnrichment

Updated: 2026-07-06T11:06:22.059Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-26T20:45:03Z

Weaknesses