CVE-2021-32930

The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).
References
Link Resource
https://us-cert.cisa.gov/ics/advisories/icsa-21-154-01 Third Party Advisory US Government Resource
https://us-cert.cisa.gov/ics/advisories/icsa-21-154-01 Third Party Advisory US Government Resource
Configurations

Configuration 1 (hide)

cpe:2.3:a:advantech:iview:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:07

Type Values Removed Values Added
References () https://us-cert.cisa.gov/ics/advisories/icsa-21-154-01 - Third Party Advisory, US Government Resource () https://us-cert.cisa.gov/ics/advisories/icsa-21-154-01 - Third Party Advisory, US Government Resource

Information

Published : 2021-06-11 17:15

Updated : 2024-11-21 06:07


NVD link : CVE-2021-32930

Mitre link : CVE-2021-32930

CVE.ORG link : CVE-2021-32930


JSON object : View

Products Affected

advantech

  • iview
CWE
CWE-306

Missing Authentication for Critical Function