First published: Fri Jul 30 2021(Updated: )
Improper Input Validation in Emerson GE Automation Proficy Machine Edition v8.0 allows an attacker to cause a denial of service and application crash via crafted traffic from a Man-in-the-Middle (MITM) attack to the component "FrameworX.exe"in the module "fxVPStatcTcp.dll".
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Emerson Proficy Machine Edition | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2021-29298.
The severity of CVE-2021-29298 is medium with a severity value of 5.3.
The affected software for CVE-2021-29298 is Emerson GE Automation Proficy Machine Edition v8.0.
An attacker can exploit CVE-2021-29298 by causing a denial of service and application crash through crafted traffic from a Man-in-the-Middle (MITM) attack to the component "FrameworX.exe" in the module "fxVPStatcTcp.dll".
Currently, there is no information available regarding a fix for CVE-2021-29298. It is recommended to follow the provided references for any updates or patches.