CVE-2021-37207

Publication date

2021-11-09 11:32:03

Family

siemens

State

PUBLISHED

Description

A vulnerability has been identified in SENTRON powermanager V3 (All versions). The affected application assigns improper access rights to a specific folder containing configuration files. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges.