Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-6061
HistoryDec 08, 2023 - 12:15 a.m.

Design/Logic Flaw

2023-12-0800:15:00
PRIOn knowledge base
www.prio-n.com
3
iconics scada suite
phantom dll loading
vulnerability
mmxfax.exe
melsim2comproc.exe
mmxcall_in.exe
malicious code execution
dll

7.5 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

21.5%

Multiple components of Iconics SCADA Suite are prone to a Phantom DLL loading vulnerability. This issue arises from the applications improperly searching for and loading dynamic link libraries, potentially allowing an attacker to execute malicious code via a DLL with a matching name in an accessible search path. The affected components are:

  • MMXFax.exe * winfax.dll

  • MelSim2ComProc.exe

  • Sim2ComProc.dll

  • MMXCall_in.exe * libdxxmt.dll

  • libsrlmt.dll

CPENameOperatorVersion
iconics_suitelt10.97.2

7.5 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

21.5%

Related for PRION:CVE-2023-6061