Impact
A local attacker can place a malicious DLL in a directory that the Redundancy Module Configuration Tool searches in the system path. Because some of these directories have writable permissions for standard users, the malicious DLL is loaded into the binary when an administrator runs the tool, giving the attacker code execution with Administrator or SYSTEM privileges. This is a classic example of a privilege misconfiguration (CWE‑276) that allows local privilege escalation.
Affected Systems
The vulnerability affects Rockwell Automation’s Redundancy Module Configuration Tool, version 10.00.00. Any installation of this version that uses the default system path directories is susceptible; no other versions are listed as affected.
Risk and Exploitability
The CVSS score of 7 indicates high severity, but the EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, suggesting limited evidence of active exploitation. The attack vector requires a local user to write to a writable PATH directory; a non‑administrator attacker with file‑system write access can exploit it. Once the public tool is executed by an administrator, the attacker gains privileged execution using the maliciously loaded DLL.
OpenCVE Enrichment