CVE-2021-31630: Code Injection
Command Injection in Open PLC Webserver v3 allows remote attackers to execute arbitrary code via the "Hardware Layer Code Box" component on the "/hardware" page of the application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-31630?
CVE-2021-31630 is classified as a high severity vulnerability due to its potential for remote code execution.
How do I fix CVE-2021-31630?
To mitigate CVE-2021-31630, update to the latest patched version of Open PLC Webserver or apply relevant security patches as released.
What type of vulnerability is CVE-2021-31630?
CVE-2021-31630 is a command injection vulnerability that allows remote attackers to execute arbitrary code.
What components are affected by CVE-2021-31630?
The vulnerability affects the "Hardware Layer Code Box" component on the "/hardware" page of the Open PLC Webserver.
Can CVE-2021-31630 be exploited remotely?
Yes, CVE-2021-31630 can be exploited remotely, making it a critical concern for users of Open PLC Webserver.