← Back to browse · API

CVE-2021-43555

Severity
HIGH
CVSS
7.3
EPSS
0.37986
Risk score
42.5
CISA KEV
No
PoC
No
Published
2021-11-19
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2021-30484, GHSA-HQ87-GPW4-CG65
Products
mySCADA:myDESIGNER All ≤8.20.0
Sources
euvd EUVD-2021-30484

Description

mySCADA myDESIGNER Versions 8.20.0 and prior fails to properly validate contents of an imported project file, which may make the product vulnerable to a path traversal payload. This vulnerability may allow an attacker to plant files on the file system in arbitrary locations or overwrite existing files, resulting in remote code execution.

References