High severity7.8NVD Advisory· Published Oct 5, 2017· Updated May 13, 2026
CVE-2017-12728
CVE-2017-12728
Description
An Improper Privilege Management issue was discovered in SpiderControl SCADA Web Server Version 2.02.0007 and prior. Authenticated, non-administrative local users are able to alter service executables with escalated privileges, which could allow an attacker to execute arbitrary code under the context of the current system services.
Affected products
1- cpe:2.3:a:spidercontrol:scada_webserver:*:*:*:*:*:*:*:*Range: <=2.02.0007
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.securityfocus.com/bid/100668nvdThird Party AdvisoryVDB Entry
- ics-cert.us-cert.gov/advisories/ICSA-17-250-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.