In Emerson ValveLink v12.0.264 to v13.4.118, a vulnerability in the ValveLink software may allow a local, unprivileged, trusted insider to escalate privileges due to insecure configuration parameters.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-20-063-01 | Third Party Advisory US Government Resource |
Configurations
Information
Published : 2020-03-05 13:15
Updated : 2020-03-09 11:47
NVD link : CVE-2020-6971
Mitre link : CVE-2020-6971
JSON object : View
CWE
CWE-269
Improper Privilege Management
Products Affected
emerson
- valvelink