A vulnerability has been identified in SICAM PAS/PQS (All versions >= V8.00 < V8.20). The affected application is installed with specific files and folders with insecure permissions. This could allow an authenticated local attacker to inject arbitrary code and escalate privileges to `NT AUTHORITY/SYSTEM`.
https://cert-portal.siemens.com/productcert/pdf/ssa-035466.pdf
https://cert-portal.siemens.com/productcert/html/ssa-035466.html