Vulnerability Details CVE-2021-43936
The software allows the attacker to upload or transfer files of dangerous types to the WebHMI portal, that may be automatically processed within the product's environment or lead to arbitrary code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.287
EPSS Ranking 96.3%
CVSS Severity
CVSS v3 Score 10.0
CVSS v2 Score 10.0
Products affected by CVE-2021-43936
-
cpe:2.3:h:webhmi:webhmi:-
-
cpe:2.3:o:webhmi:webhmi_firmware:3.5
-
cpe:2.3:o:webhmi:webhmi_firmware:4.0