ZeroHour

CVE-2020-7527

CVSS 3.1
7.8 high
EPSS
<1%p26
Published
()
Modified
Description

Incorrect Default Permission vulnerability exists in SoMove (V2.8.1) and prior which could cause elevation of privilege and provide full access control to local system users to SoMove component and services when a SoMove installer script is launched.

Vendors
schneider-electric
Products
somove
Weakness
CWE-276
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.