CVE-2015-7913
Tibbo AggreGate SCADA/HMI Apache Axis AdminService Arbitrary Class Instantiation Privilege Escalation Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
ag_server_service.exe in the AggreGate Server Service in Tibbo AggreGate before 5.30.06 allows local users to execute arbitrary Java code with SYSTEM privileges by using the Apache Axis AdminService deployment method to publish a class.
ag_server_service.exe en el AggreGate Server Service en Tibbo AggreGate en versiones anteriores a 5.30.06 permite a usuarios locales ejecutar código Java arbitrario con privilegios SYSTEM mediante el uso del método de despliegue Apache Axis AdminService para publicar una clase.
This vulnerability allows attackers to elevate privileges on vulnerable installations of Tibbo AggreGate SCADA/HMI. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific flaw exists within the Windows service "AggreGate Server Service" (ag_server_service.exe). It offers the default Apache Axis AdminService, which can be contacted by local users to publish arbitrary classes via the 'deployment' method. An attacker can leverage this vulnerability to execute code under the context of SYSTEM.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-10-22 CVE Reserved
- 2015-11-20 CVE Published
- 2023-10-15 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://zerodayinitiative.com/advisories/ZDI-15-572 | X_refsource_misc |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-15-323-01 | 2015-11-23 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Tibbo Search vendor "Tibbo" | Aggregate Search vendor "Tibbo" for product "Aggregate" | <= 5.21.02 Search vendor "Tibbo" for product "Aggregate" and version " <= 5.21.02" | - |
Affected
|