Описание
AVEVA System Platform versions 2017 through 2020 R2 P01 does not properly verify that the source of data or communication is valid.
Ссылки
- Vendor Advisory
- Third Party AdvisoryUS Government Resource
- Vendor Advisory
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия от 2017 (включая) до 2020 (исключая)
Одно из
cpe:2.3:a:aveva:system_platform:*:*:*:*:*:*:*:*
cpe:2.3:a:aveva:system_platform:2020:-:*:*:*:*:*:*
cpe:2.3:a:aveva:system_platform:2020:r2:*:*:*:*:*:*
cpe:2.3:a:aveva:system_platform:2020:r2_p01:*:*:*:*:*:*
EPSS
Процентиль: 25%
0.00085
Низкий
7.2 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-346
CWE-346
Связанные уязвимости
CVSS3: 7.2
github
почти 4 года назад
AVEVA System Platform versions 2017 through 2020 R2 P01 does not properly verify that the source of data or communication is valid.
EPSS
Процентиль: 25%
0.00085
Низкий
7.2 High
CVSS3
6.5 Medium
CVSS2
Дефекты
CWE-346
CWE-346