CVE-2012-3005
26.07.2012, 10:41
Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and earlier, as used in Wonderware Application Server, Wonderware Information Server, Foxboro Control Software, InFusion CE/FE/SCADA, InBatch, and Wonderware Historian, allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.Enginsight
Vendor | Product | Version |
---|---|---|
invensys | foxboro_control_software | 3.1 |
invensys | foxboro_control_software | 4.0 |
invensys | infusion_ce\/fe\/scada | 𝑥 ≤ 2.5 |
invensys | intouch | 𝑥 ≤ 2012 |
invensys | intouch\/wonderware_application_server | 𝑥 ≤ 2012 |
invensys | intouch\/wonderware_application_server | 10.0 |
invensys | intouch\/wonderware_application_server | 10.5 |
invensys | wonderware_historian | 𝑥 ≤ 10.0 |
invensys | wonderware_historian | 10.0 |
invensys | wonderware_inbatch | 𝑥 ≤ 9.5 |
invensys | wonderware_information_server | 𝑥 ≤ 4.5 |
invensys | wonderware_information_server | 3.1 |
invensys | wonderware_information_server | 4.0 |
invensys | wonderware_information_server | 4.0:sp1 |
𝑥
= Vulnerable software versions