An Incomplete Filtering of Special Elements vulnerability in scripts using the SSH server on B&R APROL <4.4-00P5 may allow an authenticated local attacker to authenticate as another legitimate user.
The product receives data from an upstream component, but does not completely filter special elements before sending it to a downstream component.