CVE-2017-5147

MEDIUM

AzeoTech DAQFactory <17.1 - Uncontrolled Search Path Element

Title source: llm
STIX 2.1

Description

An Uncontrolled Search Path Element issue was discovered in AzeoTech DAQFactory versions prior to 17.1. An uncontrolled search path element vulnerability has been identified, which may execute malicious DLL files that have been placed within the search path.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/100522
Third Party Advisory, US Government Resource x_refsource_misc
https://ics-cert.us-cert.gov/advisories/ICSA-17-241-01

Scores

CVSS v3 5.3
EPSS 0.0034
EPSS Percentile 25.3%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

Details

CWE
CWE-427
Status published
Products (2)
azeotech/daqfactory < 16.3
n/a/AzeoTech DAQFactory AzeoTech DAQFactory
Published Sep 09, 2017
Tracked Since Feb 18, 2026