Beveiligingsadvies

CVE-2021-41578

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2021-10-04 17:38:23
Laatst bijgewerkt 2024-08-04 03:15:29
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

mySCADA myDESIGNER 8.20.0 and below allows Directory Traversal attacks when importing project files. If an attacker can trick a victim into importing a malicious mep file, then they gain the ability to write arbitrary files to OS locations where the user has permission. This would typically lead to code execution.