ID

VAR-201705-3751


CVE

CVE-2017-7968


TITLE

Schneider Electric Wonderware InduSoft Web Studio Vulnerabilities related to authorization, permissions, and access control

Trust: 0.8

sources: JVNDB: JVNDB-2017-004369

DESCRIPTION

An Incorrect Default Permissions issue was discovered in Schneider Electric Wonderware InduSoft Web Studio v8.0 Patch 3 and prior versions. Upon installation, Wonderware InduSoft Web Studio creates a new directory and two files, which are placed in the system's path and can be manipulated by non-administrators. This could allow an authenticated user to escalate his or her privileges. Schneider Electric Wonderware InduSoft Web Studio is a human interface development tool from Schneider Electric, France. A privilege escalation vulnerability exists in Wonderware InduSoft Web Studio v8.0 Patch 3 and earlier. A local attacker may exploit this issue to gain elevated privileges

Trust: 2.61

sources: NVD: CVE-2017-7968 // JVNDB: JVNDB-2017-004369 // CNVD: CNVD-2017-08166 // BID: 98544 // IVD: 84e3202b-04a1-4b24-a863-ce1a0f65c795

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.8

sources: IVD: 84e3202b-04a1-4b24-a863-ce1a0f65c795 // CNVD: CNVD-2017-08166

AFFECTED PRODUCTS

vendor:schneider electricmodel:wonderware indusoft web studioscope:lteversion:8.0

Trust: 1.0

vendor:schneider electricmodel:wonderware indusoft web studioscope:lteversion:8.0 patch 3

Trust: 0.8

vendor:schneidermodel:electric wonderware indusoft web studio patchscope:lteversion:<=v8.03

Trust: 0.6

vendor:schneider electricmodel:wonderware indusoft web studioscope:eqversion:8.0

Trust: 0.6

vendor:schneider electricmodel:wonderware indusoft web studio patchscope:eqversion:8.03

Trust: 0.3

vendor:schneider electricmodel:wonderware indusoft web studio service packscope:neversion:8.01

Trust: 0.3

vendor:wonderware indusoft web studiomodel: - scope:eqversion:*

Trust: 0.2

sources: IVD: 84e3202b-04a1-4b24-a863-ce1a0f65c795 // CNVD: CNVD-2017-08166 // BID: 98544 // JVNDB: JVNDB-2017-004369 // CNNVD: CNNVD-201704-900 // NVD: CVE-2017-7968

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2017-7968
value: HIGH

Trust: 1.0

NVD: CVE-2017-7968
value: HIGH

Trust: 0.8

CNVD: CNVD-2017-08166
value: HIGH

Trust: 0.6

CNNVD: CNNVD-201704-900
value: HIGH

Trust: 0.6

IVD: 84e3202b-04a1-4b24-a863-ce1a0f65c795
value: HIGH

Trust: 0.2

nvd@nist.gov: CVE-2017-7968
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

CNVD: CNVD-2017-08166
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

IVD: 84e3202b-04a1-4b24-a863-ce1a0f65c795
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.9 [IVD]

Trust: 0.2

nvd@nist.gov: CVE-2017-7968
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 5.9
version: 3.0

Trust: 1.8

sources: IVD: 84e3202b-04a1-4b24-a863-ce1a0f65c795 // CNVD: CNVD-2017-08166 // JVNDB: JVNDB-2017-004369 // CNNVD: CNNVD-201704-900 // NVD: CVE-2017-7968

PROBLEMTYPE DATA

problemtype:CWE-276

Trust: 1.0

problemtype:CWE-264

Trust: 0.8

sources: JVNDB: JVNDB-2017-004369 // NVD: CVE-2017-7968

THREAT TYPE

local

Trust: 0.9

sources: BID: 98544 // CNNVD: CNNVD-201704-900

TYPE

permissions and access control issues

Trust: 0.6

sources: CNNVD: CNNVD-201704-900

CONFIGURATIONS

sources: JVNDB: JVNDB-2017-004369

PATCH

title:SEVD-2017-090-02url:http://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2017-090-02

Trust: 0.8

title:Schneider Electric Wonderware InduSoft Web Studio Privilege Escalation Vulnerability Patchurl:https://www.cnvd.org.cn/patchInfo/show/94579

Trust: 0.6

title:Schneider Electric Wonderware InduSoft Web Studio Security vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=99738

Trust: 0.6

sources: CNVD: CNVD-2017-08166 // JVNDB: JVNDB-2017-004369 // CNNVD: CNNVD-201704-900

EXTERNAL IDS

db:NVDid:CVE-2017-7968

Trust: 3.5

db:ICS CERTid:ICSA-17-138-02

Trust: 2.7

db:BIDid:98544

Trust: 2.5

db:SCHNEIDERid:SEVD-2017-090-02

Trust: 1.9

db:CNVDid:CNVD-2017-08166

Trust: 0.8

db:CNNVDid:CNNVD-201704-900

Trust: 0.8

db:JVNDBid:JVNDB-2017-004369

Trust: 0.8

db:IVDid:84E3202B-04A1-4B24-A863-CE1A0F65C795

Trust: 0.2

sources: IVD: 84e3202b-04a1-4b24-a863-ce1a0f65c795 // CNVD: CNVD-2017-08166 // BID: 98544 // JVNDB: JVNDB-2017-004369 // CNNVD: CNNVD-201704-900 // NVD: CVE-2017-7968

REFERENCES

url:https://ics-cert.us-cert.gov/advisories/icsa-17-138-02

Trust: 2.7

url:http://www.securityfocus.com/bid/98544

Trust: 2.2

url:http://download.schneider-electric.com/files?p_doc_ref=sevd-2017-090-02

Trust: 1.6

url:https://nvd.nist.gov/vuln/detail/cve-2017-7968

Trust: 1.4

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2017-7968

Trust: 0.8

url:http://www.schneider-electric.com/products/ww/en/

Trust: 0.3

url:http://www.schneider-electric.com/en/download/document/sevd-2017-090-02

Trust: 0.3

sources: CNVD: CNVD-2017-08166 // BID: 98544 // JVNDB: JVNDB-2017-004369 // CNNVD: CNNVD-201704-900 // NVD: CVE-2017-7968

CREDITS

Karn Ganeshen

Trust: 0.3

sources: BID: 98544

SOURCES

db:IVDid:84e3202b-04a1-4b24-a863-ce1a0f65c795
db:CNVDid:CNVD-2017-08166
db:BIDid:98544
db:JVNDBid:JVNDB-2017-004369
db:CNNVDid:CNNVD-201704-900
db:NVDid:CVE-2017-7968

LAST UPDATE DATE

2025-04-20T23:34:25.771000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2017-08166date:2017-06-04T00:00:00
db:BIDid:98544date:2017-05-18T00:00:00
db:JVNDBid:JVNDB-2017-004369date:2017-06-23T00:00:00
db:CNNVDid:CNNVD-201704-900date:2019-10-17T00:00:00
db:NVDid:CVE-2017-7968date:2025-04-20T01:37:25.860

SOURCES RELEASE DATE

db:IVDid:84e3202b-04a1-4b24-a863-ce1a0f65c795date:2017-06-04T00:00:00
db:CNVDid:CNVD-2017-08166date:2017-06-04T00:00:00
db:BIDid:98544date:2017-05-18T00:00:00
db:JVNDBid:JVNDB-2017-004369date:2017-06-23T00:00:00
db:CNNVDid:CNNVD-201704-900date:2017-04-20T00:00:00
db:NVDid:CVE-2017-7968date:2017-05-19T15:29:00.287