← Back

CVE-2021-32498

nvd nist
Published: Dec 17, 2021Modified: Jun 17, 2026

JSON object

Loading...
8.6
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 6.0
Source: NVD

Description

SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the pathname of the emulator and use path traversal to run an arbitrary executable located on the host system. When the user starts the emulator from SOPAS ET the corresponding executable will be started instead of the emulator

Affected (1)

1 product
Sopas Engineering Tool
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 4.8.0

References (2)

Source: psirt@sick.de
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.