CVE-2021-22682

IMPROPER ACCESS CONTROL CWE-284
The affected product is configured by default to be installed for all users, which allows full permissions, including read/write access. This may allow unprivileged users to modify the binaries and configuration files and lead to local privilege escalation.

Risk Information

  • CVE ID
  • CVE-2021-22682
  • Vendor
  • Horner Automation
  • Product
  • Cscape
  • CVSS v3
  • 8.4