CVE-2020-25161: High severity advantech webaccess/scada vulnerability
Published Feb 23, 2021
·Updated
The WADashboard component of WebAccess/SCADA Versions 9.0 and prior may allow an attacker to control or influence a path used in an operation on the filesystem and remotely execute code as an administrator.
Affected Software
2 affected components
Advantech Webaccess\/scada<9.0.1
Advantech WebAccess/SCADA Versions 9.0 and prior
Event History
Feb 23, 2021
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
DescriptionWeakness
Aug 4, 2024
Data Sourced
via ICS·03:36 PM
SeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-25161?
CVE-2020-25161 is rated as high severity due to the potential for remote code execution as an administrator.
2
How do I fix CVE-2020-25161?
To fix CVE-2020-25161, upgrade to a version of WebAccess/SCADA later than 9.0.
3
What are the potential impacts of CVE-2020-25161?
The impacts of CVE-2020-25161 include unauthorized access to system resources and the ability to execute code remotely.
4
Which software is affected by CVE-2020-25161?
CVE-2020-25161 affects Advantech WebAccess/SCADA versions 9.0 and prior.
5
Is there any workaround for CVE-2020-25161?
There are no established workarounds for CVE-2020-25161; upgrading is the recommended action.