7.2
CVSSv2

CVE-2017-12728

Published: 05/10/2017 Updated: 19/08/2020
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

An Improper Privilege Management issue exists in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an malicious user to execute arbitrary code under the context of the current system services.

Vulnerable Product Search on Vulmon Subscribe to Product

spidercontrol scada webserver

Exploits

SpiderControl SCADA Web Server versions 2020007 and below suffer from an improper privilege management vulnerability ...