CVE-2021-22284

Severity
8.8HIGH
EPSS
0.5%
top 35.11%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 4
Latest updateFeb 10

Description

Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node running the AC800M OPC Server.

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:HExploitability: 1.7 | Impact: 6.0

Affected Packages2 packages

NVDabb/opc5.1.0-06.0.0-4

🔴Vulnerability Details

2
GHSA
GHSA-xpp9-6v93-3xvq: Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to execute arbitrary code in the node2022-02-10
CVEList
SECURITY - OPC Server for AC 800M - Remote Code Execution Vulnerability2022-02-04
CVE-2021-22284 (HIGH CVSS 8.8) | Incorrect Permission Assignment for | cvebase.io