"value":"RoboDK versions 5.5.3 and prior contain an insecure permission assignment to critical directories vulnerability, which could allow a local user to escalate privileges and write files to the RoboDK process and achieve code execution."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-732 Incorrect Permission Assignment for Critical Resource",
"value":"\nRoboDK has not responded to requests to work with CISA to mitigate this \nvulnerability. Users of the affected product are encouraged to contact \nRoboDK support for additional information. \n\n<br>"
}
],
"value":"RoboDK has not responded to requests to work with CISA to mitigate this \nvulnerability. Users of the affected product are encouraged to contact \nRoboDK support for additional information. \n\n\n"
}
],
"credits":[
{
"lang":"en",
"value":"Noam Moshe of Claroty reported this vulnerability to CISA. "