CVE Database
/

CVE-2020-10051

Back to search

CVE-2020-10051

Published: Sep 9, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). Multiple services of the affected application are executed with SYSTEM privileges while the call path is not quoted. This could allow a local attacker to inject arbitrary commands that are execeuted instead of the legitimate service.

VendorProductVersions

Siemens AG

SIMATIC RTLS Locating Manager

affected
All versions < V2.10.2

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now