Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pqwc-c6p6-66pq

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. An unauthenticated remote user could use a specially crafted database connection configuration file to execute an arbitrary process on the server machine.

AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. An unauthenticated remote user could use a specially crafted database connection configuration file to execute an arbitrary process on the server machine.

EPSS

Процентиль: 95%
0.20014
Средний

9.8 Critical

CVSS3

Дефекты

CWE-99

Связанные уязвимости

CVSS3: 7.5
nvd
почти 7 лет назад

AVEVA Software, LLC InduSoft Web Studio prior to Version 8.1 SP3 and InTouch Edge HMI (formerly InTouch Machine Edition) prior to Version 2017 Update. An unauthenticated remote user could use a specially crafted database connection configuration file to execute an arbitrary process on the server machine.

EPSS

Процентиль: 95%
0.20014
Средний

9.8 Critical

CVSS3

Дефекты

CWE-99