Loading
CEServer.exe in the CEServer component in the Remote Agent module in InduSoft Web Studio 6.1 and 7.0 does not require authentication, which allows remote attackers to execute arbitrary code via vectors related to creation of a file, loading a DLL, and process control.
Use CWE-287, Indusoft vendor hub and Web Studio product page to widen CVE-2011-4051 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2014-0780, CVE-2011-0342 and CVE-2011-1900 for nearby disclosures in the same product family.