AVEVA Update
3235Warning Date
Severity Level
Warning Number
Target Sector
13 September, 2020
● Critical
2020-1763
Communication and information technology - Manufacturing
Description:
AVEVA has released a security update to address a vulnerability in the following product:
- Enterprise Data Management Web
- v2019 and prior
Threats:
Attacker could exploit the vulnerability by conducting SQL injection.
Best practice and Recommendations:
The CERT team encourages users to review AVEVA security advisory and apply the necessary update: