{ "containers": { "cna": { "providerMetadata": { "orgId": "cec7a2ec-15b4-4faf-bd53-b40f371f3a77", "shortName": "siemens", "dateUpdated": "2023-12-12T11:24:59.615Z" }, "descriptions": [ { "lang": "en", "value": "A vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.4). The software insecurely loads libraries which makes it vulnerable to DLL hijacking.\nSuccessful exploitation by a local attacker could lead to a takeover of the system\nwhere the software is installed." } ], "affected": [ { "vendor": "Siemens", "product": "LOGO! Soft Comfort", "versions": [ { "version": "All versions < V8.4", "status": "affected" } ], "defaultStatus": "unknown" } ], "metrics": [ { "cvssV3_1": { "version": "3.1", "vectorString": "CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:U/RC:C", "baseScore": 8.4, "baseSeverity": "HIGH" } } ], "problemTypes": [ { "descriptions": [ { "lang": "en", "cweId": "CWE-427", "description": "CWE-427: Uncontrolled Search Path Element", "type": "CWE" } ] } ], "references": [ { "tags": [ "x_refsource_MISC" ], "url": "https://cert-portal.siemens.com/productcert/pdf/ssa-983300.pdf" } ] }, "adp": [ { "providerMetadata": { "orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE", "dateUpdated": "2024-08-04T15:33:05.434Z" }, "title": "CVE Program Container", "references": [ { "tags": [ "x_refsource_MISC", "x_transferred" ], "url": "https://cert-portal.siemens.com/productcert/pdf/ssa-983300.pdf" } ] } ] }, "cveMetadata": { "assignerOrgId": "cec7a2ec-15b4-4faf-bd53-b40f371f3a77", "assignerShortName": "siemens", "cveId": "CVE-2020-25244", "datePublished": "2021-04-22T20:42:19.000Z", "dateReserved": "2020-09-10T00:00:00.000Z", "dateUpdated": "2024-08-04T15:33:05.434Z", "state": "PUBLISHED" }, "dataType": "CVE_RECORD", "dataVersion": "5.1" }