A vulnerability has been identified in Polarion ALM (All versions < V2404.0). The affected product is vulnerable due to weak file and folder permissions in the installation path. An attacker with local access could exploit this vulnerability to escalate privileges to NT AUTHORITY\SYSTEM.
History

Wed, 07 May 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 18 Oct 2024 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens polarion Alm
CPEs cpe:2.3:a:siemens:polarion_alm:*:*:*:*:*:*:*:*
Vendors & Products Siemens
Siemens polarion Alm

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published: 2024-02-13T09:00:02.735Z

Updated: 2025-05-07T21:15:09.457Z

Reserved: 2023-12-05T16:42:20.988Z

Link: CVE-2023-50236

cve-icon Vulnrichment

Updated: 2024-08-02T22:09:49.946Z

cve-icon NVD

Status : Modified

Published: 2024-02-13T09:15:46.633

Modified: 2024-11-21T08:36:43.500

Link: CVE-2023-50236

cve-icon Redhat

No data.