zenon services - unquoted service path vulnerability can result in privilige escalation
Summary
zenon services installed in a directory path containing blanks are not registered with a quoted path, resulting in a potential unquoted service path vulnerability
Description
zenon services installed in a directory path containing blanks are not registered with a quoted path, resulting in a potential unquoted service path vulnerability
Issue Number: 200056
Fixed on Date: 7.11.2019
Versions: 8.00 0 BUILD 62073 | 8.10 0 BUILD 61858
Related Articles
zenon Changesets Excel
Here, you can access a comprehensive list of changes across all maintained versions of the zenon Software Platform as Excel Worksheets. This includes both implemented bug-fixes and new features. Additionally, these lists are available in CSV format ...
zenon Changesets CSV
Here, you can access a comprehensive list of changes across all maintained versions of the zenon Software Platform as Excel Worksheets. This includes both implemented bug-fixes and new features. Additionally, these lists are available in as Excel ...
CD_SVA_2025_01: zenon Remote Transport Vulnerability
What you should know The vulnerability targets a specific function of the zenon Remote Transport Service. The underlying weaknesses is CWE-306: ‘Missing Authentication for Critical Function’. The versions listed below are affected by this ...
CD_SVA_2023_3: Wibu Systems - CodeMeter Runtime - security vulnerability addressed
A report has been received for the following security vulnerability in the zenon software platform: CVE-2023-3935 Further details regarding the vulnerability, mitigation options and product fixes that may be available, can be found in the document ...
FAQ: Are products in the zenon product family affected by the vulnerability, labelled BlastRADIUS?
The vulnerability labelled BlastRADIUS is a vulnerability in the RADIUS protocol, also known under the reference CVE-2024-3596. The zenon IIoT Services Identity Service supports an Identity Provider for authentication against RADIUS server, that can ...