CVE-2024-5402: Mint Workbench I Unquoted Service Path Enumeration
Unquoted Search Path or Element vulnerability in ABB Mint Workbench.
A local attacker who successfully exploited this vulnerability could gain elevated privileges by inserting an executable file in the path of the affected service.
This issue affects Mint Workbench I versions: from 5866 before 5868.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5402?
CVE-2024-5402 has a high severity rating due to the potential for privilege escalation by local attackers.
How do I fix CVE-2024-5402?
To fix CVE-2024-5402, ensure that the affected service is configured to use fully qualified paths to prevent the exploitation of unquoted search paths.
Which versions of ABB Mint Workbench are affected by CVE-2024-5402?
CVE-2024-5402 affects ABB Mint Workbench versions from 5866 to 5868.
Can CVE-2024-5402 be exploited remotely?
No, CVE-2024-5402 is a local vulnerability that requires an attacker to have local access to the system.
What type of attack does CVE-2024-5402 enable?
CVE-2024-5402 enables local attackers to gain elevated privileges by inserting malicious executable files in an unquoted search path.