SICK SOPAS ET before version 4.8.0 allows attackers to manipulate the command line arguments to pass in any value to the Emulator executable.
References
| Link | Resource |
|---|---|
| https://sick.com/psirt#advisories | Patch Vendor Advisory |
| https://sick.com/psirt#advisories | Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 06:07
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://sick.com/psirt#advisories - Patch, Vendor Advisory |
12 Jul 2022, 17:42
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-74 |
27 Dec 2021, 18:49
| Type | Values Removed | Values Added |
|---|---|---|
| References | (MISC) https://sick.com/psirt#advisories - Patch, Vendor Advisory | |
| CWE | CWE-77 | |
| CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
| CPE | cpe:2.3:a:sick:sopas_engineering_tool:*:*:*:*:*:*:*:* |
17 Dec 2021, 18:36
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2021-12-17 17:15
Updated : 2024-11-21 06:07
NVD link : CVE-2021-32499
Mitre link : CVE-2021-32499
CVE.ORG link : CVE-2021-32499
JSON object : View
Products Affected
sick
- sopas_engineering_tool
CWE
CWE-74
Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
