GE Communicator, all versions prior to 4.0.517, allows an attacker to place malicious files within the working directory of the program, which may allow an attacker to manipulate widgets and UI elements.
References
Link | Resource |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-19-122-02 | Mitigation US Government Resource Third Party Advisory |
Configurations
History
No history.
Information
Published : 2019-05-09 15:29
Updated : 2022-11-30 22:11
NVD link : CVE-2019-6546
Mitre link : CVE-2019-6546
CVE.ORG link : CVE-2019-6546
JSON object : View
Products Affected
ge
- ge_communicator
CWE
CWE-427
Uncontrolled Search Path Element