CVE-2021-34594: Beckhoff: Relative path traversal vulnerability through TwinCAT OPC UA Server
TwinCAT OPC UA Server in TF6100 and TS6100 in product versions before 4.3.48.0 or with TcOpcUaServer versions below 3.2.0.194 are prone to a relative path traversal that allow administrators to create or delete any files on the system.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2021-34594?
CVE-2021-34594 has a high severity rating due to the potential for unauthorized file creation and deletion on the system.
How do I fix CVE-2021-34594?
To fix CVE-2021-34594, upgrade TwinCAT OPC UA Server to version 4.3.48.0 or later, or TcOpcUaServer to version 3.2.0.194 or later.
Which products are affected by CVE-2021-34594?
CVE-2021-34594 affects the TwinCAT OPC UA Server in TF6100 and TS6100 product versions before 4.3.48.0.
What type of vulnerability is CVE-2021-34594?
CVE-2021-34594 is a relative path traversal vulnerability that allows file manipulation on the affected systems.
Who is the vendor for CVE-2021-34594?
The vendor for CVE-2021-34594 is Beckhoff, which develops the TF6100 and TS6100 product lines.