CVE-2017-9966

A privilege escalation vulnerability exists in Schneider Electric's Pelco VideoXpert Enterprise versions 2.0 and prior. By replacing certain files, an unauthorized user can obtain system privileges and the inserted code would execute at an elevated privilege level.
Configurations

Configuration 1 (hide)

cpe:2.3:a:schneider-electric:pelco_videoxpert:*:*:*:*:enterprise:*:*:*

History

21 Nov 2024, 03:37

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/102338 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/102338 - Third Party Advisory, VDB Entry
References () https://ics-cert.us-cert.gov/advisories/ICSA-17-355-02 - Patch, Third Party Advisory, US Government Resource () https://ics-cert.us-cert.gov/advisories/ICSA-17-355-02 - Patch, Third Party Advisory, US Government Resource
References () https://www.schneider-electric.com/en/download/document/SEVD-2017-339-01/ - () https://www.schneider-electric.com/en/download/document/SEVD-2017-339-01/ -

Information

Published : 2018-01-02 03:29

Updated : 2024-11-21 03:37


NVD link : CVE-2017-9966

Mitre link : CVE-2017-9966

CVE.ORG link : CVE-2017-9966


JSON object : View

Products Affected

schneider-electric

  • pelco_videoxpert