First published: Fri Aug 04 2023(Updated: )
This vulnerability allows remote attackers to create arbitrary files on affected installations of Triangle MicroWorks SCADA Data Gateway. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
Affected Software | Affected Version | How to fix |
---|---|---|
Triangle MicroWorks SCADA Data Gateway |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-23-1028 is considered high due to its potential for remote attackers to create arbitrary files.
To fix ZDI-23-1028, update the Triangle MicroWorks SCADA Data Gateway to the latest version that addresses this vulnerability.
ZDI-23-1028 affects the existing authentication mechanism, which can be bypassed by attackers.
No, ZDI-23-1028 requires authentication; however, the existing authentication can be bypassed.
ZDI-23-1028 affects installations of Triangle MicroWorks SCADA Data Gateway.