Unrated severityNVD Advisory· Published Dec 18, 2019· Updated Aug 5, 2024
ABB PB610 HMIStudio accepts malicious DLL file in an application
CVE-2019-18996
Description
Path settings in HMIStudio component of ABB PB610 Panel Builder 600 versions 2.8.0.424 and earlier accept DLLs outside of the program directory, potentially allowing an attacker with access to the local file system the execution of code in the application’s context.
Affected products
2<=2.8.0.424+ 1 more
- (no CPE)range: <=2.8.0.424
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- search.abb.com/library/Download.aspxmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.