PT-2026-80881 · Scheidt & Bachmann · Entervo Hmi
CVE-2026-30512
·
Published
2026-08-24
·
Updated
2026-08-25
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Scheidt & Bachmann entervo HMI versions prior to V2 R5 P0 M5
Description
A local privilege escalation issue exists in the Restricted Access (Kiosk) Mode implementation. An authenticated low-privileged user can escape the kiosk environment by opening the application manual in an external PDF viewer and abusing the print functionality. This allows the user to access Windows Explorer and execute arbitrary commands with local administrator privileges.
Recommendations
Update Scheidt & Bachmann entervo HMI to version V2 R5 P0 M5 or later.
Fix
LPE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Entervo Hmi