CVE Published: 06/12/2021 |
CVE Updated: 04/08/2024 |
CVE Year: 2021 Source: icscert |
Vendor: Distributed Data Systems |
Product: WebHMI Status : PUBLISHED
CVE-2021-43936 Description
The software allows the attacker to upload or transfer files of dangerous types to the WebHMI portal, that may be automatically processed within the product\'s environment or lead to arbitrary code execution.
Metrics
CVSS Version: 3.1 |
Base Score: 10 CRITICAL Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H