ZDI-CAN-20851: ZDI-23-1103: Schneider Electric IGSS UpdateService Exposed Dangerous Method Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of Schneider Electric IGSS. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-20851?
ZDI-CAN-20851 is classified as a high-severity vulnerability due to its potential for privilege escalation.
How do I fix ZDI-CAN-20851?
To fix ZDI-CAN-20851, install the latest security updates provided by Schneider Electric for IGSS.
Who is affected by ZDI-CAN-20851?
ZDI-CAN-20851 affects installations of Schneider Electric IGSS where an attacker can execute low-privileged code.
What type of vulnerability is ZDI-CAN-20851?
ZDI-CAN-20851 is a privilege escalation vulnerability that allows local attackers to gain higher-level permissions.
Can ZDI-CAN-20851 be exploited remotely?
No, ZDI-CAN-20851 requires local access to the target system to be exploited.