First published: Mon Apr 11 2022(Updated: )
An attacker can perform a privilege escalation through the SICK OEE if the application is installed in a directory where non authenticated or low privilege users can modify its content.
Credit: psirt@sick.de
Affected Software | Affected Version | How to fix |
---|---|---|
Sick Overall Equipment Effectiveness | =0.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-27578 is classified as a high-severity privilege escalation vulnerability.
To mitigate CVE-2022-27578, ensure that the SICK OEE application is installed in a secure directory with restricted access for unauthorized or low privilege users.
Exploitation of CVE-2022-27578 could allow an attacker to gain elevated privileges and potentially compromise the system.
CVE-2022-27578 affects version 0.5.1 of SICK Overall Equipment Effectiveness.
Any organization using SICK Overall Equipment Effectiveness version 0.5.1 with improper directory permissions is vulnerable to CVE-2022-27578.