Beveiligingsadvies

CVE-2021-40396

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-01-28 19:09:28
Laatst bijgewerkt 2025-04-15 19:22:27
Toegewezen door talos
CVSS-score 8.8
Status PUBLISHED

Beschrijving

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iService 1.1.7. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.