6.9
CVSSv2

CVE-2012-3005

Published: 26/07/2012 Updated: 30/07/2012
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and previous versions, as used in Wonderware Application Server, Wonderware Information Server, Foxboro Control Software, InFusion CE/FE/SCADA, InBatch, and Wonderware Historian, allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.

Vulnerable Product Search on Vulmon Subscribe to Product

invensys intouch\\/wonderware application server 10.0

invensys intouch\\/wonderware application server

invensys infusion ce\\/fe\\/scada

invensys wonderware historian

invensys intouch

invensys wonderware historian 10.0

invensys wonderware information server 4.0

invensys wonderware information server 3.1

invensys foxboro control software 4.0

invensys intouch\\/wonderware application server 10.5

invensys wonderware information server

invensys foxboro control software 3.1

invensys wonderware inbatch