CVE-2021-22280

Improper DLL loading algorithms in B&R Automation Studio versions >=4.0 and <4.12 may allow an authenticated local attacker to execute code in the context of the product.
Configurations

No configuration.

History

21 Nov 2024, 05:49

Type Values Removed Values Added
References () https://www.br-automation.com/fileadmin/2021-10_DLL_Hijacking_Vulnerability_in_Automation_Studio-7dd34511.pdf - () https://www.br-automation.com/fileadmin/2021-10_DLL_Hijacking_Vulnerability_in_Automation_Studio-7dd34511.pdf -

01 Aug 2024, 13:42

Type Values Removed Values Added
CWE CWE-20

27 May 2024, 08:15

Type Values Removed Values Added
Summary (en) Improper DLL loading algorithms in B&R Automation Studio may allow an authenticated local attacker to execute code with elevated privileges. This issue affects Automation Studio versions before 4.12. (en) Improper DLL loading algorithms in B&R Automation Studio versions >=4.0 and <4.12 may allow an authenticated local attacker to execute code in the context of the product.

15 May 2024, 16:40

Type Values Removed Values Added
Summary
  • (es) Los algoritmos de carga de DLL inadecuados en B&amp;R Automation Studio pueden permitir que un atacante local autenticado ejecute código con privilegios elevados. Este problema afecta a las versiones de Automation Studio anteriores a la 4.12.

14 May 2024, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-14 20:15

Updated : 2024-11-21 05:49


NVD link : CVE-2021-22280

Mitre link : CVE-2021-22280

CVE.ORG link : CVE-2021-22280


JSON object : View

Products Affected

No product.

CWE
CWE-20

Improper Input Validation