Vulnerability Details CVE-2023-45205
A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.20). The affected application is installed with specific files and folders with insecure permissions. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges to `NT AUTHORITY/SYSTEM`.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 19.2%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2023-45205
-
cpe:2.3:a:siemens:sicam_pas/pqs:8.00
-
cpe:2.3:a:siemens:sicam_pas/pqs:8.06
-
cpe:2.3:a:siemens:sicam_pas/pqs:8.07
-
cpe:2.3:a:siemens:sicam_pas/pqs:8.08
-
cpe:2.3:a:siemens:sicam_pas/pqs:8.09
-
cpe:2.3:a:siemens:sicam_pas/pqs:8.11