---
id: CVE-2026-30512
title: >-
  A local privilege escalation vulnerability exists in the Restricted Access
  (Kiosk) Mode implementation of Scheidt & Bachmann entervo HMI prior to V2 R5
  P0 M5
summary: >-
  A local privilege escalation vulnerability exists in the Restricted Access
  (Kiosk) Mode implementation of Scheidt & Bachmann entervo HMI prior to V2 R5
  P0 M5. The vulnerability affects the external PDF viewer functionality used to
  displa…
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-250
published: '2026-08-24'
updated: '2026-09-09'
sourceUpdated: '2026-09-09T16:04:24.933'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-30512'
references:
  - url: 'https://gist.github.com/dreizehnutters/8e0d24c6badce6b3a106aade15eeef4c'
    label: cve@mitre.org
  - url: 'https://www.tuv.com/landingpage/de/schwachstelle/'
    label: cve@mitre.org
tags:
  - nvd
epss: 0.00168
epssPercentile: 0.05344
ingestedAt: '2026-09-09T16:14:05.515Z'
---

## Overview

A local privilege escalation vulnerability exists in the Restricted Access (Kiosk) Mode implementation of Scheidt & Bachmann entervo HMI prior to V2 R5 P0 M5. The vulnerability affects the external PDF viewer functionality used to display the application manual and its interaction with the underlying Windows operating system. An authenticated low-privileged user can escape the kiosk environment by opening the application manual in the external PDF viewer and abusing the print functionality. Successful exploitation allows execution of arbitrary commands outside the kiosk environment with local administrator privileges.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
