PT-2020-15996 · B. Braun · B. Braun Onlinesuite
Published
2020-11-06
·
Updated
2020-11-13
·
CVE-2020-25174
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
B. Braun OnlineSuite versions prior to AP 3.0
Description
A DLL hijacking issue allows local attackers to execute code on the system as a high privileged user. This enables them to potentially gain elevated access and perform unauthorized actions.
Recommendations
For versions prior to AP 3.0, update to a version later than AP 3.0 to resolve the issue. As a temporary workaround, consider restricting access to the system to minimize the risk of exploitation.
Fix
Uncontrolled Search Path Element
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
B. Braun Onlinesuite