CVE-2021-32985

HIGH

AVEVA System Platform <2020 R2 P01 - Info Disclosure

Title source: llm

Description

AVEVA System Platform versions 2017 through 2020 R2 P01 does not properly verify that the source of data or communication is valid.

Scores

CVSS v3 7.2
EPSS 0.0008
EPSS Percentile 24.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Classification

CWE
CWE-346
Status published

Affected Products (4)

aveva/system_platform < 2020
aveva/system_platform
aveva/system_platform
aveva/system_platform

Timeline

Published Apr 04, 2022
Tracked Since Feb 18, 2026