Vulnerability Details CVE-2020-25244
A vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.4). The software insecurely loads libraries which makes it vulnerable to DLL hijacking.
Successful exploitation by a local attacker could lead to a takeover of the system
where the software is installed.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.3%
CVSS Severity
CVSS v3 Score 8.4
CVSS v2 Score 7.2
Products affected by CVE-2020-25244
-
cpe:2.3:a:siemens:logo!_soft_comfort:-
-
cpe:2.3:a:siemens:logo!_soft_comfort:2.0
-
cpe:2.3:a:siemens:logo!_soft_comfort:3.0
-
cpe:2.3:a:siemens:logo!_soft_comfort:3.1
-
cpe:2.3:a:siemens:logo!_soft_comfort:4.0
-
cpe:2.3:a:siemens:logo!_soft_comfort:5.0
-
cpe:2.3:a:siemens:logo!_soft_comfort:6.1
-
cpe:2.3:a:siemens:logo!_soft_comfort:7.0
-
cpe:2.3:a:siemens:logo!_soft_comfort:8.0
-
cpe:2.3:a:siemens:logo!_soft_comfort:8.1