CVE-2024-1155

Incorrect permissions in the installation directories for shared SystemLink Elixir based services may allow an authenticated user to potentially enable escalation of privilege via local access. 
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
NICNA
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 19%
VendorProductVersion
emersondata_record_ad
𝑥
≤ 2.0.1
emersonflexlogger
𝑥
≤ 2022_q3
emersong_web_development_software
𝑥
≤ 2022_q3
emersonlabview_nxg
5.1
emersonlabview_nxg
5.1
emersonlabview_nxg
5.1
emersonspecification_compliance_manager
𝑥
≤ 2023_q4
emersonstatic_test_software_suite
𝑥
≤ 1.2
emersonsts_software_bundle
𝑥
≤ 21.0
emersonsystemlink_server
𝑥
< 2024_q1
𝑥
= Vulnerable software versions