Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Invensys Wonderware InTouch Default Universal NetDDE Share Privilege Escalation Vulnerability

Invensys Wonderware InTouch is prone to a privilege-escalation vulnerability because of poor default permissions on a NetDDE share.

Attackers can exploit this issue to execute arbitrary applications that accept NetDDE connections. This can compromise the application and possibly the underlying computer.

InTouch 8.0 is vulnerable.







 

Privacy Statement
Copyright 2009, SecurityFocus