Lucene search

K
cvelistIcscertCVELIST:CVE-2021-42543
HistoryNov 05, 2021 - 3:39 p.m.

CVE-2021-42543 AzeoTech DAQFactory

2021-11-0515:39:21
CWE-242
icscert
www.cve.org
2
azeotech daqfactory
cve-2021-42543
vulnerability
specific functions
crafted project file
code execution
system reboot
system shutdown

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

7.8

Confidence

High

EPSS

0.001

Percentile

32.0%

The affected application uses specific functions that could be abused through a crafted project file, which could lead to code execution, system reboot, and system shutdown.

CNA Affected

[
  {
    "product": "DAQFactory",
    "vendor": "AzeoTech",
    "versions": [
      {
        "lessThanOrEqual": "New version",
        "status": "affected",
        "version": "All versions",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

7.8

Confidence

High

EPSS

0.001

Percentile

32.0%

Related for CVELIST:CVE-2021-42543