CVE-2023-45793: Medium severity siemens siveillance control vulnerability
A vulnerability has been identified in Siveillance Control (All versions >= V2.8 < V3.1.1). The affected product does not properly check the list of access groups that are assigned to an individual user. This could enable a locally logged on user to gain write privileges for objects where they only have read privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-45793?
CVE-2023-45793 is classified as a high severity vulnerability due to improper access control that could allow unauthorized write access.
How do I fix CVE-2023-45793?
To fix CVE-2023-45793, you should update Siveillance Control to version 3.1.1 or later.
What are the risks associated with CVE-2023-45793?
The risks associated with CVE-2023-45793 include unauthorized modifications to sensitive objects by locally logged on users.
Is CVE-2023-45793 present in all versions of Siveillance Control?
No, CVE-2023-45793 is present in all versions of Siveillance Control from version 2.8 up to but not including 3.1.1.
Who is affected by CVE-2023-45793?
Any organization using Siveillance Control versions 2.8 to 3.1.0 is affected by CVE-2023-45793.