An issue was discovered in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that allows unauthenticated arbitrary commands to be executed.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Edge | Aveva | * | 2020 (excluding) |
Edge | Aveva | 2020 (including) | 2020 (including) |
Edge | Aveva | 2020-r2 (including) | 2020-r2 (including) |