Vulnerabilities > CVE-2017-9966 - Unspecified vulnerability in Schneider-Electric Pelco Videoxpert

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
SINGLE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
high complexity
schneider-electric

Summary

A privilege escalation vulnerability exists in Schneider Electric's Pelco VideoXpert Enterprise versions 2.0 and prior. By replacing certain files, an unauthorized user can obtain system privileges and the inserted code would execute at an elevated privilege level.

Vulnerable Configurations

Part Description Count
Application
Schneider-Electric
1