First published: Fri Aug 04 2023(Updated: )
This vulnerability allows remote attackers to upload arbitrary files on affected installations of Triangle MicroWorks SCADA Data Gateway. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed.
Affected Software | Affected Version | How to fix |
---|---|---|
Trianglemicroworks SCADA Data Gateway |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of ZDI-CAN-20536 is considered high due to its ability to allow remote attackers to upload arbitrary files.
To fix ZDI-CAN-20536, ensure that you update your Triangle MicroWorks SCADA Data Gateway to the latest version that addresses this vulnerability.
The impact of ZDI-CAN-20536 includes potential unauthorized access and control over the affected system, leading to further exploitation.
No, the authentication mechanism can be bypassed, so additional security measures must be implemented.
All installations of Triangle MicroWorks SCADA Data Gateway that have not applied the necessary patches are affected by ZDI-CAN-20536.