First published: Mon Jul 15 2024(Updated: )
Unquoted Search Path or Element vulnerability in ABB Mint Workbench. A local attacker who successfully exploited this vulnerability could gain elevated privileges by inserting an executable file in the path of the affected service. This issue affects Mint Workbench I versions: from 5866 before 5868.
Credit: cybersecurity@ch.abb.com
Affected Software | Affected Version | How to fix |
---|---|---|
ABB Mint Workbench | >=5866<=5868 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-5402 has a high severity rating due to the potential for privilege escalation by local attackers.
To fix CVE-2024-5402, ensure that the affected service is configured to use fully qualified paths to prevent the exploitation of unquoted search paths.
CVE-2024-5402 affects ABB Mint Workbench versions from 5866 to 5868.
No, CVE-2024-5402 is a local vulnerability that requires an attacker to have local access to the system.
CVE-2024-5402 enables local attackers to gain elevated privileges by inserting malicious executable files in an unquoted search path.