Security Advisory

CVE-2021-42797

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-12-16 00:00:00
Last updated 2024-08-04 03:38:50
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Path traversal vulnerability in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior allows an unauthenticated user to steal the Windows access token of the user account configured for accessing external DB resources.