← Back

CVE-2023-34982

nvd nist
Published: Nov 15, 2023Modified: Jun 17, 2026

JSON object

Loading...
7.1
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Exploitability: 1.8 / Impact: 5.2
Source: NVD

Description

This external control vulnerability, if exploited, could allow a local OS-authenticated user with standard privileges to delete files with System privilege on the machine where these products are installed, resulting in denial of service.

Affected (40)

13 products
Batch Management
Communication Drivers
Edge
Enterprise Licensing
Historian
Intouch
Manufacturing Execution System
Mobile Operator
Plant Scada
Recipe Management
System Platform
Telemetry Server
Work Tasks
Configuration A
40 vulnerable
Vulnerable SoftwareAffected Versions
Aveva
Before 2020
Version 2020
Version 2020 sp1
Aveva
Before 2020
Version 2020
Version 2020 r2
Version 2020 r2_p01
Up to 20.1.101
Up to 3.7.002
Aveva
Before 2020
Version 2020
Version 2020 r2
Version 2020 r2_p01
Aveva
Before 2020
Version 2020
Version 2020 r2
Version 2020 r2_p01
Aveva
Before 2020
Version 2020
Version 2020 p01
Aveva
Before 2020
Version 2020
Version 2020
Version 2020 r1
Aveva
Before 2020
Version 2020
Version 2020 r2
Aveva
Before 2020
Version 2020
Version 2020 update_1_patch_2
Aveva
Before 2020
Version 2020
Version 2020 r2
Version 2020 r2_p01
Aveva
Version 2020r2
Version 2020r2 sp1
Aveva
Before 2020
Version 2020
Version 2020 update_1
Version 2020 update_2

References (4)

Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.