xArrow SCADA versions 7.2 and prior permits unvalidated registry keys to be run with application-level privileges.CreditsSharon Brizinov from Claroty, and Michael Heinzl reported these vulnerabilities to CISA.Referenceshttps://www.cisa.gov/uscert/ics/advisories/icsa-21-229-03