7.2
CVSSv3

CVE-2017-5161

Published: 13/02/2017 Updated: 15/03/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.2 | Impact Score: 6 | Exploitability Score: 0.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

An issue exists in Sielco Sistemi Winlog Lite SCADA Software, versions prior to Version 3.02.01, and Winlog Pro SCADA Software, versions prior to Version 3.02.01. An uncontrolled search path element (DLL Hijacking) vulnerability has been identified. Exploitation of this vulnerability could give an attacker access to the system with the same level of privilege as the application that utilizes the malicious DLL.

Vulnerable Product Search on Vulmon Subscribe to Product

sielcosistemi winlog lite

sielcosistemi winlog pro

Exploits

Sielco Sistemi Winlog SCADA Software versions prior to 30201 suffer from a dll hijacking vulnerability ...