VYPR
High severity7.1NVD Advisory· Published Dec 18, 2019· Updated Jun 17, 2026

CVE-2019-18996

CVE-2019-18996

Description

Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside of the program directory, potentially allowing an attacker with access to the local file system the execution of code in the application’s context.

Affected products

3
  • cpe:2.3:a:abb:pb610_panel_builder_600:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:abb:pb610_panel_builder_600:*:*:*:*:*:*:*:*range: <=2.8.0.424
    • (no CPE)range: <=2.8.0.424
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.