CVE-2021-38410
—CVSS 3.1
7.8 high
EPSS
<1%p13
Published
()
Modified
Description
AVEVA Software Platform Common Services (PCS) Portal versions 4.5.2, 4.5.1, 4.5.0, and 4.4.6 are vulnerable to DLL hijacking through an uncontrolled search path element, which may allow an attacker control to one or more locations in the search path.
- Vendors
- aveva
- Products
- batch management, enterprise data management, manufacturing execution system, mobile operator, platform common services, system platform, work tasks
- Weakness
- CWE-427
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.