Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside of the program directory, potentially allowing an attacker with access to the local file system the execution of code in the application’s context.
References
Link | Resource |
---|---|
http://search.abb.com/library/Download.aspx?DocumentID=3ADR010466&LanguageCode=en&DocumentPartId=&Action=Launch | Third Party Advisory |
Configurations
Information
Published : 2019-12-18 13:15
Updated : 2023-02-03 09:22
NVD link : CVE-2019-18996
Mitre link : CVE-2019-18996
JSON object : View
CWE
CWE-426
Untrusted Search Path
Products Affected
abb
- pb610_panel_builder_600