The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft code to alter the intended controller flow of the software.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-266-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2021-11-22T18:58:45
Updated: 2024-08-04T01:44:22.375Z
Reserved: 2021-08-10T00:00:00
Link: CVE-2021-38448
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-11-22T19:15:07.907
Modified: 2024-11-21T06:17:07.353
Link: CVE-2021-38448
Redhat
No data.