← Back

CVE-2017-5161

nvd nist
Published: Feb 13, 2017Modified: May 13, 2026

JSON object

Loading...
7.2
Vector
CVSS:3.0/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:H/A:H
Exploitability: 0.6 / Impact: 6.0
Source: NVD

Description

An issue was discovered in Sielco Sistemi Winlog Lite SCADA Software, versions prior to Version 3.02.01, and Winlog Pro SCADA Software, versions prior to Version 3.02.01. An uncontrolled search path element (DLL Hijacking) vulnerability has been identified. Exploitation of this vulnerability could give an attacker access to the system with the same level of privilege as the application that utilizes the malicious DLL.

Affected (2)

2 products
Winlog Lite
Winlog Pro
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.01.10
Up to 3.01.10

References (4)

Source: ics-cert@hq.dhs.gov
Third Party AdvisoryVDB Entry
Source: ics-cert@hq.dhs.gov
MitigationThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party AdvisoryUS Government Resource

Timeline

No history available yet.