What the vulnerability does

01Description

The affected product is vulnerable to a stack-based buffer overflow, which may allow an attacker to remotely execute arbitrary code on the WebAccess/SCADA (WebAccess/SCADA versions prior to 8.4.5, WebAccess/SCADA versions prior to 9.0.1).

Key dates

02Disclosure timeline

August 10, 2021 CVE published
August 3, 2024 Record updated