HTTP: Advantech iView runProViewUpgrade Handling Remote Command Injection

This signature detects attempts to exploit a known vulnerability against Advantech. A successful attack can lead to command injection and arbitrary code execution.

Extended Description

The affected products configuration is vulnerable due to missing authentication, which may allow an attacker to change configurations and execute arbitrary code on the iView (versions prior to v5.7.03.6182).

Affected Products

Advantech iview

Short Name
HTTP:CTS:ADVANTECH-IVIEW-CI
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Advantech CVE-2021-32930 Command Handling Injection Remote iView runProViewUpgrade
Release Date
06/16/2021
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3396
False Positive
Unknown
Vendors

Advantech

CVSS Score

7.5

Found a potential security threat?