CVE-2021-37207
09.11.2021, 12:15
A vulnerability has been identified in SENTRON powermanager V3 (All versions). The affected application assigns improper access rights to a specific folder containing configuration files. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.Enginsight
Vendor | Product | Version |
---|---|---|
siemens | sentron_powermanager_3 | 3.0 ≤ 𝑥 ≤ 3.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration