CVE-2021-40396

Publication date

2022-01-28 19:09:28

Family

talos

State

PUBLISHED

Description

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iService 1.1.7. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.