Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-33873


This privilege escalation vulnerability, if exploited, cloud allow a local OS-authenticated user with standard privileges to escalate to System privilege on the machine where these products are installed, resulting in complete compromise of the target machine.


Published

2023-11-15T17:15:41.313

Last Modified

2024-11-21T08:06:06.847

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-250
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application aveva batch_management < 2020 Yes
Application aveva batch_management 2020 Yes
Application aveva batch_management 2020 Yes
Application aveva communication_drivers < 2020 Yes
Application aveva communication_drivers 2020 Yes
Application aveva communication_drivers 2020 Yes
Application aveva communication_drivers 2020 Yes
Application aveva edge ≤ 20.1.101 Yes
Application aveva enterprise_licensing ≤ 3.7.002 Yes
Application aveva historian < 2020 Yes
Application aveva historian 2020 Yes
Application aveva historian 2020 Yes
Application aveva historian 2020 Yes
Application aveva intouch < 2020 Yes
Application aveva intouch 2020 Yes
Application aveva intouch 2020 Yes
Application aveva intouch 2020 Yes
Application aveva manufacturing_execution_system < 2020 Yes
Application aveva manufacturing_execution_system 2020 Yes
Application aveva manufacturing_execution_system 2020 Yes
Application aveva mobile_operator < 2020 Yes
Application aveva mobile_operator 2020 Yes
Application aveva mobile_operator 2020 Yes
Application aveva mobile_operator 2020 Yes
Application aveva plant_scada < 2020 Yes
Application aveva plant_scada 2020 Yes
Application aveva plant_scada 2020 Yes
Application aveva recipe_management < 2020 Yes
Application aveva recipe_management 2020 Yes
Application aveva recipe_management 2020 Yes
Application aveva system_platform < 2020 Yes
Application aveva system_platform 2020 Yes
Application aveva system_platform 2020 Yes
Application aveva system_platform 2020 Yes
Application aveva telemetry_server 2020r2 Yes
Application aveva telemetry_server 2020r2 Yes
Application aveva work_tasks < 2020 Yes
Application aveva work_tasks 2020 Yes
Application aveva work_tasks 2020 Yes
Application aveva work_tasks 2020 Yes

References