CVE-2021-32930

CRITICAL

Advantech iView < 5.7.03.6182 - Unauthenticated Arbitrary Code Execution

Title source: llm
STIX 2.1

Description

The affected product’s configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).

References (1)

Core 1
Core References
Third Party Advisory, US Government Resource x_refsource_misc
https://us-cert.cisa.gov/ics/advisories/icsa-21-154-01

Scores

CVSS v3 9.8
EPSS 0.0045
EPSS Percentile 63.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-306
Status published
Products (1)
advantech/iview < 5.7.03.6182
Published Jun 11, 2021
Tracked Since Feb 18, 2026