CVE-2021-43555: mySCADA myDESIGNER
mySCADA myDESIGNER Versions 8.20.0 and prior fails to properly validate contents of an imported project file, which may make the product vulnerable to a path traversal payload. This vulnerability may allow an attacker to plant files on the file system in arbitrary locations or overwrite existing files, resulting in remote code execution.
Affected Software
Remediation
Patch Available
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2021-43555?
CVE-2021-43555 is classified as a high severity vulnerability due to the potential for arbitrary file planting.
How do I fix CVE-2021-43555?
To mitigate CVE-2021-43555, ensure you upgrade mySCADA myDESIGNER to version 8.21.0 or later where the vulnerability is addressed.
What types of systems are affected by CVE-2021-43555?
CVE-2021-43555 affects mySCADA myDESIGNER versions 8.20.0 and prior.
What can an attacker do with CVE-2021-43555?
An attacker exploiting CVE-2021-43555 may plant files on the file system in arbitrary locations.
Is CVE-2021-43555 a remote vulnerability?
CVE-2021-43555 can be exploited locally through the import of malicious project files by an authorized user.