First published: Mon Oct 04 2021(Updated: )
LCDS LAquis SCADA through 4.3.1.1085 is vulnerable to a control bypass and path traversal. If an attacker can get a victim to load a malicious els project file and use the play feature, then the attacker can bypass a consent popup and write arbitrary files to OS locations where the user has permission, leading to code execution.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Laquisscada Scada | <=4.3.1.1085 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.