The vendor explicitly identifies these products as affected by this CVE.
- SICAM PAS/PQS
- Summary
- The affected application is installed with specific files and folders with insecure permissions. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges to `NT AUTHORITY/SYSTEM`.
- Remediation
- Install the Security Patch (available at https://support.industry.siemens.com/cs/ww/ en/view/109824392/), which can be applied to versions V8.00 to V8.21
