What the vulnerability does

01Description

A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All versions < V6.0.8). The application does not properly validate the users' privileges when executing some operations, which could allow a user with low permissions to arbitrary modify files that should be protected against writing.

Key dates

02Disclosure timeline

August 14, 2020 CVE published
August 4, 2024 Record updated