Security Advisory

CVE-2021-40389

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-01-28 19:09:27
Last updated 2025-04-15 19:22:33
Assigner talos
CVSS score 8.8
State PUBLISHED

Description

A privilege escalation vulnerability exists in the installation of Advantech DeviceOn/iEdge Server 1.0.2. A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.