CVE-2022-42972 Information
Feb 02, 2023
cve
Description
A CWE-732: Incorrect Permission Assignment for Critical Resource vulnerability exists that could cause local privilege escalation when a local attacker modifies the webroot directory. Affected Products: APC Easy UPS Online Monitoring Software (Windows 7 10 11 & Windows Server 2016 2019 2022 - Versions prior to V2.5-GA) APC Easy UPS Online Monitoring Software (Windows 11 Windows Server 2019 2022 - Versions prior to V2.5-GA-01-22261) Schneider Electric Easy UPS Online Monitoring Software (Windows 7 10 11 & Windows Server 2016 2019 2022 - Versions prior to V2.5-GS) Schneider Electric Easy UPS Online Monitoring Software (Windows 11 Windows Server 2019 2022 - Versions prior to V2.5-GS-01-22261)