CVE-2023-33873

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/11/2023
Last modified:
08/12/2023

Description

<br /> This privilege escalation vulnerability, if exploited, cloud allow a local OS-authenticated user with standard privileges to escalate to System privilege on the machine where these products are installed, resulting in complete compromise of the target machine.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:aveva:batch_management:*:*:*:*:*:*:*:* 2020 (excluding)
cpe:2.3:a:aveva:batch_management:2020:-:*:*:*:*:*:*
cpe:2.3:a:aveva:batch_management:2020:sp1:*:*:*:*:*:*
cpe:2.3:a:aveva:communication_drivers:*:*:*:*:*:*:*:* 2020 (excluding)
cpe:2.3:a:aveva:communication_drivers:2020:-:*:*:*:*:*:*
cpe:2.3:a:aveva:communication_drivers:2020:r2:*:*:*:*:*:*
cpe:2.3:a:aveva:communication_drivers:2020:r2_p01:*:*:*:*:*:*
cpe:2.3:a:aveva:edge:*:*:*:*:*:*:*:* 20.1.101 (including)
cpe:2.3:a:aveva:enterprise_licensing:*:*:*:*:*:*:*:* 3.7.002 (including)
cpe:2.3:a:aveva:historian:*:*:*:*:*:*:*:* 2020 (excluding)
cpe:2.3:a:aveva:historian:2020:-:*:*:*:*:*:*
cpe:2.3:a:aveva:historian:2020:r2:*:*:*:*:*:*
cpe:2.3:a:aveva:historian:2020:r2_p01:*:*:*:*:*:*
cpe:2.3:a:aveva:intouch:*:*:*:*:*:*:*:* 2020 (excluding)
cpe:2.3:a:aveva:intouch:2020:-:*:*:*:*:*:*