CVE-2024-21852

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
01/02/2024
Last modified:
07/02/2024

Description

In Rapid Software LLC&amp;#39;s Rapid SCADA versions prior to Version 5.8.4, an attacker can supply a malicious configuration file by utilizing a Zip Slip vulnerability in the unpacking routine to achieve remote code execution.<br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rapidscada:rapid_scada:*:*:*:*:*:*:*:* 5.8.4 (including)