4.3
CVSSv3

CVE-2021-38431

Published: 15/10/2021 Updated: 20/10/2021
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

An authenticated user using Advantech WebAccess SCADA in versions 9.0.3 and prior can use API functions to disclose project names and paths from other users.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

advantech webaccess scada