Vulnerabilities > CVE-2021-43930 - Unspecified vulnerability in Smartptt Scada 1.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
HIGH Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
Elcomplus SmartPTT is vulnerable as the backup and restore system does not adequately validate download requests, enabling malicious users to perform path traversal attacks and potentially download arbitrary files from the system.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |