← Back

CVE-2023-6132

nvd nist
Published: Feb 29, 2024Modified: Jun 17, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

The vulnerability, if exploited, could allow a malicious entity with access to the file system to achieve arbitrary code execution and privilege escalation by tricking AVEVA Edge to load an unsafe DLL.

Affected (4)

1 product
Platform Common Services
Configuration A
4 vulnerable · 9 platform
Vulnerable SoftwareAffected Versions
Aveva
Version 4.4.6
Version 4.5.0
Version 4.5.1
Version 4.5.2
Running on/withPlatform Versions
Aveva
Batch Management
Version 2020
Aveva
Enterprise Data Management
Version 2021
Aveva
Manufacturing Execution System
Version 2020
Aveva
Mobile Operator
Version 2020
Aveva
System Platform
Version 2020
Aveva
System Platform
Version 2020 r2
Aveva
System Platform
Version 2020 r2_p01
Aveva
Work Tasks
Version 2020
Aveva
Work Tasks
Version 2020 update_1

References (4)

Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.