Security Advisory

CVE-2017-12728

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-10-04 07:00:00
Last updated 2024-08-05 18:43:56
Assigner icscert
CVSS score not scored
State PUBLISHED

Description

An Improper Privilege Management issue was discovered in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an attacker to execute arbitrary code under the context of the current system services.