The WADashboard component of WebAccess/SCADA Versions 9.0 and prior may allow an attacker to control or influence a path used in an operation on the filesystem and remotely execute code as an administrator.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-20-289-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2021-02-23T16:14:20
Updated: 2024-08-04T15:26:09.779Z
Reserved: 2020-09-04T00:00:00
Link: CVE-2020-25161
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-02-23T17:15:13.270
Modified: 2024-11-21T05:17:30.647
Link: CVE-2020-25161
Redhat
No data.