Description
mySCADA myDESIGNER 8.20.0 and below allows Directory Traversal attacks when importing project files. If an attacker can trick a victim into importing a malicious mep file, then they gain the ability to write arbitrary files to OS locations where the user has permission. This would typically lead to code execution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-28593 | mySCADA myDESIGNER 8.20.0 and below allows Directory Traversal attacks when importing project files. If an attacker can trick a victim into importing a malicious mep file, then they gain the ability to write arbitrary files to OS locations where the user has permission. This would typically lead to code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T03:15:29.106Z
Reserved: 2021-09-24T00:00:00.000Z
Link: CVE-2021-41578
No data.
Status : Modified
Published: 2021-10-04T18:15:09.677
Modified: 2024-11-21T06:26:27.523
Link: CVE-2021-41578
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD