CVE-2021-45460
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability has been identified in SICAM PQ Analyzer (All versions < V3.18). A service is started by an unquoted registry entry. As there are spaces in this path, attackers with write privilege to those directories might be able to plant executables that will run in place of the legitimate process. Attackers might achieve persistence on the system ("backdoors") or cause a denial of service.
Se ha identificado una vulnerabilidad en SICAM PQ Analyzer (Todas las versiones anteriores a V3.18). Un servicio es iniciado mediante una entrada de registro no citada. Como se presentan espacios en esta ruta, los atacantes con privilegio de escritura en esos directorios podrían plantar ejecutables que serán ejecutados en lugar del proceso legítimo. Los atacantes podrían lograr la persistencia en el sistema ("backdoors") o causar una denegación de servicio
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-12-22 CVE Reserved
- 2022-01-11 CVE Published
- 2023-08-04 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-428: Unquoted Search Path or Element
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-173318.pdf | 2022-01-18 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Sicam Pq Analyzer Firmware Search vendor "Siemens" for product "Sicam Pq Analyzer Firmware" | < 3.18 Search vendor "Siemens" for product "Sicam Pq Analyzer Firmware" and version " < 3.18" | - |
Affected
| in | Siemens Search vendor "Siemens" | Sicam Pq Analyzer Search vendor "Siemens" for product "Sicam Pq Analyzer" | - | - |
Safe
|