PT-2023-8151 · Voltronic Power · Voltronic Power Viewpower

Published

2023-12-20

·

Updated

2025-07-09

·

CVE-2023-51579

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Voltronic Power ViewPower (affected versions not specified)
Description The issue is related to incorrect permission assignments by default, allowing local attackers to escalate privileges on affected installations. An attacker must first obtain the ability to execute low-privileged code on the target system to exploit this vulnerability. The specific flaw exists within the product installer, resulting from incorrect permissions set on folders, which can be leveraged to escalate privileges and execute arbitrary code in the context of SYSTEM.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Incorrect Permission

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

BDU:2024-00135
CVE-2023-51579
ZDI-23-1885

Affected Products

Voltronic Power Viewpower