Vulnerabilities > CVE-2017-9966 - Unspecified vulnerability in Schneider-Electric Pelco Videoxpert

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
high complexity
schneider-electric

Summary

A privilege escalation vulnerability exists in Schneider Electric's Pelco VideoXpert Enterprise versions 2.0 and prior. By replacing certain files, an unauthorized user can obtain system privileges and the inserted code would execute at an elevated privilege level.

Vulnerable Configurations

Part Description Count
Application
Schneider-Electric
1