QID 590595
Date Published: 2021-11-30
QID 590595: VISAM VBASE Editor Multiple Vulnerabilities (ICSA-21-308-01)
AFFECTED PRODUCTS
The following version of VISAM VBASE Editor, an automation platform, are affected:
VBASE Pro-RT/ Server-RT (Web Remote): Version 11.6.0.6
QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys
Successful exploitation of these vulnerabilities may allow un-neutralized user-controllable data input, disclosure of local files, access to NTLM (Windows New Technology LAN Manager) hashes, and access to sensitive files.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-21-308-01 for affected packages and patching details.
Vendor References
- ICSA-21-308-01 -
www.us-cert.gov/ics/advisories/ICSA-21-308-01
CVEs related to QID 590595
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-21-308-01 |
|