siemens sppa-t3000-ms3000-migration-server CVE-2019-18309 is a vulnerability in Siemens Sppa T3000 Ms3000 Migration Server
Published on December 12, 2019

A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with local access to the MS3000 Server and a low privileged user account could gain root privileges by manipulating specific files in the local file system. This vulnerability is independent from CVE-2019-18308. Please note that an attacker needs to have local access to the MS3000 in order to exploit this vulnerability. At the time of advisory publication no public exploitation of this security vulnerability was known.

NVD

Weakness Type

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2019-18309 has been classified to as an Authorization vulnerability or weakness.


Products Associated with CVE-2019-18309

Want to know whenever a new CVE is published for Siemens Sppa T3000 Ms3000 Migration Server? stack.watch will email you.

 

Affected Versions

Siemens SPPA-T3000 MS3000 Migration Server Version All versions is affected by CVE-2019-18309

Exploit Probability

EPSS
0.09%
Percentile
26.31%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.