CVE-2021-33009: mySCADA myPRO Unrestricted Upload of File with Dangerous Type
Published May 13, 2022
·Updated
mySCADA myPRO versions prior to 8.20.0 allows an unauthenticated remote attacker to upload arbitrary files to the file system.
Affected Software
2 affected components
mySCADA All versions prior to 8.20.0
mySCADA myPRO<8.20.0
Remediation
Information
mySCADA recommends users apply update v8.20.0 or later.
Event History
May 13, 2022
CVE Published
via MITRE·03:19 PM
Data Sourced
via MITRE·03:19 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-33009?
CVE-2021-33009 is considered a high severity vulnerability due to the ability of unauthenticated remote attackers to upload arbitrary files.
2
How do I fix CVE-2021-33009?
To fix CVE-2021-33009, update mySCADA myPRO to version 8.20.0 or later.
3
Who is affected by CVE-2021-33009?
CVE-2021-33009 affects all versions of mySCADA myPRO prior to 8.20.0.
4
What impact does CVE-2021-33009 have on systems?
CVE-2021-33009 allows an unauthenticated remote attacker to potentially compromise the system by uploading malicious files.
5
Is CVE-2021-33009 an authenticated or unauthenticated vulnerability?
CVE-2021-33009 is an unauthenticated vulnerability, allowing attackers to exploit it without prior access.