ZeroHour

CVE-2021-38410

CVSS 3.1
7.8 high
EPSS
<1%p13
Published
()
Modified
Description

AVEVA Software Platform Common Services (PCS) Portal versions 4.5.2, 4.5.1, 4.5.0, and 4.4.6 are vulnerable to DLL hijacking through an uncontrolled search path element, which may allow an attacker control to one or more locations in the search path.

Vendors
aveva
Products
batch management, enterprise data management, manufacturing execution system, mobile operator, platform common services, system platform, work tasks
Weakness
CWE-427
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.