Authentication Bypass in iView by T-Systems
CVE-2021-32930

9.8CRITICAL

Key Information:

Vendor
Advantech
Status
Vendor
CVE Published:
11 June 2021

Summary

The iView product from T-Systems is susceptible to a security issue caused by missing authentication. This vulnerability enables attackers to alter configurations and execute arbitrary code, posing a significant risk to system integrity. Users of iView versions prior to v5.7.03.6182 should prioritize updating their software to mitigate potential threats.

Affected Version(s)

iView versions prior to v5.7.03.6182

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.