CVE-2021-33005: mySCADA myPRO Path Traversal
Published May 13, 2022
·Updated
mySCADA myPRO versions prior to 8.20.0 allows an unauthenticated remote attacker to upload arbitrary files to arbitrary directories.
Affected Software
2 affected components
mySCADA All versions prior to 8.20.0
mySCADA myPRO<8.20.0
Remediation
Information
mySCADA recommends users apply update v8.20.0 or later.
Event History
May 13, 2022
CVE Published
via MITRE·03:18 PM
Data Sourced
via MITRE·03:18 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-33005?
CVE-2021-33005 is classified as a high severity vulnerability due to its potential for unauthorized file uploads.
2
How do I fix CVE-2021-33005?
To fix CVE-2021-33005, upgrade mySCADA myPRO to version 8.20.0 or later.
3
What systems are affected by CVE-2021-33005?
CVE-2021-33005 affects all versions of mySCADA and myPRO prior to 8.20.0.
4
Can remote attackers exploit CVE-2021-33005 without authentication?
Yes, CVE-2021-33005 allows unauthenticated remote attackers to exploit the vulnerability.
5
What type of attacks can CVE-2021-33005 facilitate?
CVE-2021-33005 can facilitate arbitrary file upload attacks, enabling potential system compromise.