CVE-2021-32954: Path Traversal
Published Jun 18, 2021
·Updated
Advantech WebAccess/SCADA Versions 9.0.1 and prior is vulnerable to a directory traversal, which may allow an attacker to remotely read arbitrary files on the file system.
Affected Software
2 affected components
Advantech Webaccess\/scada<=9.0.1
Advantech WebAccess/SCADA Versions 9.0.1 and prior
Event History
Jun 18, 2021
CVE Published
via MITRE·01:53 PM
Data Sourced
via MITRE·01:53 PM
DescriptionWeakness
Aug 3, 2024
Data Sourced
via ICS·11:42 PM
SeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-32954?
CVE-2021-32954 is classified as a medium severity vulnerability due to its potential impact on file system access.
2
How do I fix CVE-2021-32954?
To fix CVE-2021-32954, upgrade Advantech WebAccess/SCADA to version 9.0.2 or later.
3
What type of attack is possible with CVE-2021-32954?
CVE-2021-32954 allows for directory traversal attacks, which can enable attackers to read arbitrary files on the system.
4
Which versions of Advantech WebAccess/SCADA are affected by CVE-2021-32954?
Advantech WebAccess/SCADA Versions 9.0.1 and prior are affected by CVE-2021-32954.
5
What is a directory traversal vulnerability?
A directory traversal vulnerability, like CVE-2021-32954, allows attackers to access files and directories outside of the intended directory structure.