QID 590964
Date Published: 2022-08-04
QID 590964: Sielco Sistemi Winlog SCADA Software Uncontrolled Search Path Element Vulnerability (ICSA-17-038-01)
Uncontrolled Search Path vulnerability is discovered in Winlog SCADA Software.
Affected Version:
Winlog Lite SCADA Software version 3.02.01
QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys
Successful exploitation of this vulnerability may allow an attacker to load a malicious DLL and execute code on the affected system with the same privileges as the application that loaded the malicious DLL.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-17-038-01 for affected packages and patching details.
Vendor References
- ICSA-17-038-01 -
www.us-cert.gov/ics/advisories/ICSA-17-038-01
CVEs related to QID 590964
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-17-038-01 |
|