Vulnerabilities (CVE)

Filtered by CWE-250
Total 142 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-5623 1 Br-automation 1 Industrial Automation Aprol 2024-09-13 N/A 7.8 HIGH
An untrusted search path vulnerability in B&R APROL <= R 4.4-00P3 may be used by an authenticated local attacker to get other users to execute arbitrary code under their privileges.
CVE-2024-36398 1 Siemens 1 Sinec Nms 2024-08-14 N/A 7.8 HIGH
A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application executes a subset of its services as `NT AUTHORITY\SYSTEM`. This could allow a local attacker to execute operating system commands with elevated privileges.