CVE-2021-22674: Path Traversal
Published Aug 10, 2021
·Updated
The affected product is vulnerable to a relative path traversal condition, which may allow an attacker access to unauthorized files and directories on the WebAccess/SCADA (WebAccess/SCADA versions prior to 8.4.5, WebAccess/SCADA versions prior to 9.0.1).
Affected Software
4 affected components
Advantech Webaccess\/scada<8.4.5
Advantech Webaccess\/scada>=9.0<9.0.1
Advantech WebAccess/SCADA versions prior to 8.4.5
Advantech WebAccess/SCADA versions prior to 9.0.1
Remediation
Patch Available
Event History
Aug 10, 2021
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Aug 3, 2024
Data Sourced
via ICS·06:54 PM
SeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-22674?
CVE-2021-22674 has a medium severity rating due to its potential impact on unauthorized access to files.
2
How do I fix CVE-2021-22674?
To fix CVE-2021-22674, upgrade to WebAccess/SCADA version 8.4.5 or later and version 9.0.1 or later.
3
Which products are affected by CVE-2021-22674?
CVE-2021-22674 affects Advantech WebAccess/SCADA versions prior to 8.4.5 and 9.0.1.
4
What type of vulnerability is CVE-2021-22674?
CVE-2021-22674 is classified as a relative path traversal vulnerability.
5
What can an attacker do with CVE-2021-22674?
An attacker exploiting CVE-2021-22674 may gain access to unauthorized files and directories within the affected software.