Loading HuntDB...

GHSA-fcm3-cc23-mg3g

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

This vulnerability allows local attackers to escalate privileges on vulnerable installations of ABB MicroSCADA 9.3 with FP 1-2-3. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the configuration of the access controls for the installed product files. The installation procedure leaves critical files open to manipulation by any authenticated user. An attacker can leverage this vulnerability to escalate privileges to SYSTEM. Was ZDI-CAN-5097.

Related CVEs

Key Information

GHSA ID
GHSA-fcm3-cc23-mg3g
Published
May 13, 2022 1:33 AM
Last Modified
May 13, 2022 1:33 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 28, 2025 6:27 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.