ZDI-23-1103: Schneider Electric IGSS UpdateService Exposed Dangerous Method Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Schneider Electric IGSS. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-1103?
The severity of ZDI-23-1103 is critical due to its potential for privilege escalation by local attackers.
How do I fix ZDI-23-1103?
To fix ZDI-23-1103, ensure that you apply the latest security updates provided by Schneider Electric for IGSS.
Who is affected by ZDI-23-1103?
ZDI-23-1103 affects installations of Schneider Electric IGSS where local attackers can escalate privileges.
What are the prerequisites for exploiting ZDI-23-1103?
An attacker must have the ability to execute low-privileged code on the target system to exploit ZDI-23-1103.
What type of attack is possible with ZDI-23-1103?
ZDI-23-1103 enables local attackers to escalate privileges on affected installations of Schneider Electric IGSS.