9.8
CVSSv3

CVE-2021-42796

Published: 16/12/2023 Updated: 20/12/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An issue exists in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that allows unauthenticated arbitrary commands to be executed.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

aveva edge 2020

aveva edge

ICS Advisories

AVEVA Edge
Critical Infrastructure Sectors: Critical Manufacturing