CVE-2018-5313
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
08/03/2018
Last modified:
24/08/2020
Description
A vulnerability allows local attackers to escalate privilege on Rapid Scada 5.5.0 because of weak C:\SCADA permissions. The specific flaw exists within the access control that is set and modified during the installation of the product. The product sets weak access control restrictions. An attacker can leverage this vulnerability to execute arbitrary code under the context of Administrator, the IUSR account, or SYSTEM.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:rapidscada:rapid_scada:5.5.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



