Description


The vulnerability, if exploited, could allow an authenticated miscreant (Process Optimization Designer User) to embed OLE objects into graphics, and escalate their privileges to the identity of a victim user who subsequently interacts with the graphical elements.

Related CPE's


Weaknesses



CWE-676

CVSS impact metrics


CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:N

7.4 · High

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2026-01-16T02:16:45.833Z

1 month ago

Last modified

2026-01-22T15:14:11.433Z

4 weeks ago