← Back to home
ICSA-22-053-03  ·  Published 2022-02-22  ·  View on CISA ICS-CERT ↗

WIN-911 2021

CVSS 5.6 MEDIUM

Risk Summary

Successful exploitation of these vulnerabilities could allow an attacker to leverage the misconfigured privileges to the installed directory and achieve code execution in the application 's context and permissions.

Remediations

  • WIN-911 has released a hotfix that removes write access for the user's group on the affected directory subfolders. For the hotfix and more information, please use the following link: WIN-911 2021 R1/R2 File Permission Vulnerability.

Affected Vendors

WIN-911

Affected Products (2)

WIN-911 · WIN-911 2021 R1 5.21.10
WIN-911 · WIN-911 2021 R2 5.21.17

Affected Sectors

Multiple

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more