Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as an administrator to escalate privileges on the system.
Advisories
Source ID Title
EUVD EUVD EUVD-2021-9805 Incorrect permissions are set to default on the ‘Project Management’ page of WebAccess/SCADA portal of WebAccess/SCADA Versions 9.0.1 and prior, which may allow a low-privileged user to update an administrator’s password and login as an administrator to escalate privileges on the system.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-03T18:51:06.922Z

Reserved: 2021-01-05T00:00:00

Link: CVE-2021-22669

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-04-26T19:15:08.417

Modified: 2024-11-21T05:50:26.640

Link: CVE-2021-22669

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.