Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w96c-3jm7-32vm

Опубликовано: 16 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

An issue was discovered in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that allows unauthenticated arbitrary commands to be executed.

An issue was discovered in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that allows unauthenticated arbitrary commands to be executed.

EPSS

Процентиль: 32%
0.00125
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 9.8
nvd
около 2 лет назад

An issue was discovered in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that allows unauthenticated arbitrary commands to be executed.

CVSS3: 9.8
fstec
около 3 лет назад

Уязвимость исполняемого файла stadosvr.exe SCADA-системы AVEVA Edge, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 32%
0.00125
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-78