CVE-2023-0898

MEDIUM

GE Micom S1 Agile - Uncontrolled Search Path

Title source: rule

Description

General Electric MiCOM S1 Agile is vulnerable to an attacker achieving code execution by placing malicious DLL files in the directory of the application.

Scores

CVSS v3 5.3
EPSS 0.0004
EPSS Percentile 10.3%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:H

Classification

CWE
CWE-427
Status published

Affected Products (1)

ge/micom_s1_agile

Timeline

Published Nov 07, 2023
Tracked Since Feb 18, 2026