CVE Vulnerabilities

CVE-2021-32977

Improper Verification of Cryptographic Signature

Published: Apr 04, 2022 | Modified: Nov 21, 2024
CVSS 3.x
7.2
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.5 MEDIUM
AV:N/AC:L/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

AVEVA System Platform versions 2017 through 2020 R2 P01 does not verify, or incorrectly verifies, the cryptographic signature for data.

Weakness

The product does not verify, or incorrectly verifies, the cryptographic signature for data.

Affected Software

NameVendorStart VersionEnd Version
System_platformAveva2017 (including)2020 (excluding)
System_platformAveva2020 (including)2020 (including)
System_platformAveva2020-r2 (including)2020-r2 (including)
System_platformAveva2020-r2_p01 (including)2020-r2_p01 (including)

References