CVE-2020-13535: Critical severity kepware kepserverex vulnerability
A privilege escalation vulnerability exists in Kepware LinkMaster 3.0.94.0. In its default configuration, an attacker can globally overwrite service configuration to execute arbitrary code with NT SYSTEM privileges.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-13535?
CVE-2020-13535 is a privilege escalation vulnerability that exists in Kepware LinkMaster 3.0.94.0 software.
How severe is CVE-2020-13535?
CVE-2020-13535 is considered critical with a severity score of 7.8.
How can an attacker exploit CVE-2020-13535?
In its default configuration, an attacker can globally overwrite service configuration to execute arbitrary code with NT SYSTEM privileges.
Which version of Kepware LinkMaster is affected by CVE-2020-13535?
Kepware LinkMaster version 3.0.94.0 is affected by CVE-2020-13535.
Is there a fix available for CVE-2020-13535?
I could not find any specific information regarding a fix for CVE-2020-13535. It is recommended to contact the software vendor for further information or updates.