Abb Mint Workbench vulnerabilities

6 known vulnerabilities affecting abb/mint_workbench.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH5MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2024-5402MEDIUMCVSS 6.2≥ 5866, ≤ 58682024-07-15
CVE-2024-5402 [MEDIUM] CWE-428 CVE-2024-5402: Unquoted Search Path or Element vulnerability in ABB Mint Workbench. A local attacker who success Unquoted Search Path or Element vulnerability in ABB Mint Workbench. A local attacker who successfully exploited this vulnerability could gain elevated privileges by inserting an executable file in the path of the affected service. This issue affects Mint Workbench I versions: from 5866 before 5868.
nvd
CVE-2022-31219HIGHCVSS 7.8≤ 5866≥ build, ≤ 58662022-06-15
CVE-2022-31219 [HIGH] CWE-59 CVE-2022-31219: Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product.
cvelistv5nvd
CVE-2022-26057HIGHCVSS 7.8≤ 5866≥ build, ≤ 58662022-06-15
CVE-2022-26057 [MEDIUM] CWE-269 CVE-2022-26057: Vulnerabilities in the Mint WorkBench allow a low privileged attacker to create and write to a file Vulnerabilities in the Mint WorkBench allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Mint WorkBench installer file allows a low-privileged user to run a "repair" operation on the product
cvelistv5nvd
CVE-2022-31216HIGHCVSS 7.8≤ 5866≥ build, ≤ 58662022-06-15
CVE-2022-31216 [HIGH] CWE-59 CVE-2022-31216: Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product.
cvelistv5nvd
CVE-2022-31217HIGHCVSS 7.8≤ 5866≥ build, ≤ 58662022-06-15
CVE-2022-31217 [HIGH] CWE-59 CVE-2022-31217: Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product.
cvelistv5nvd
CVE-2022-31218HIGHCVSS 7.8≤ 5866≥ build, ≤ 58662022-06-15
CVE-2022-31218 [HIGH] CWE-59 CVE-2022-31218: Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product.
cvelistv5nvd