First published: Tue Nov 12 2024(Updated: )
A vulnerability has been identified in Spectrum Power 7 (All versions < V24Q3). The affected product contains several root-owned SUID binaries that could allow an authenticated local attacker to escalate privileges.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Spectrum Power 7 | <24q3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-29119 is classified as high due to the potential for privilege escalation.
To fix CVE-2024-29119, upgrade your Spectrum Power 7 installation to version 24Q3 or later.
All users of Spectrum Power 7 versions prior to V24Q3 are affected by CVE-2024-29119.
CVE-2024-29119 can facilitate authenticated local attacks allowing attackers to escalate privileges.
Currently, there are no documented workarounds for CVE-2024-29119; upgrading to the latest version is recommended.