#VU66574 Improper access control in Proficy Machine Edition - CVE-2022-2792
Published: August 17, 2022
Proficy Machine Edition
Emerson
Description
The vulnerability allows a local user to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to the affected application stores project data in a directory with improper access control lists. A local user can bypass implemented security restrictions and gain unauthorized access to the application.