VYPR
Unrated severityNVD Advisory· Published Dec 22, 2021· Updated Aug 3, 2024

CVE-2021-21912

CVE-2021-21912

Description

A privilege escalation vulnerability exists in the Windows version of installation for Advantech R-SeeNet Advantech R-SeeNet 2.4.15 (30.07.2021). A specially-crafted file can be replaced in the system to escalate privileges to NT SYSTEM authority. An attacker can provide a malicious file to trigger this vulnerability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A privilege escalation vulnerability in Advantech R-SeeNet 2.4.15 allows authenticated users to replace the Apache2.2 service executable to gain NT SYSTEM privileges.

Vulnerability

The vulnerability exists in the Windows installation of Advantech R-SeeNet version 2.4.15 (30.07.2021). The Apache2.2 service binary file located in the C:\R-SeeNet directory has incorrect default permissions, allowing the "Authenticated Users" group to have "Full/Change" privileges over the executable. This service runs with NT SYSTEM authority. [1]

Exploitation

An attacker with local authenticated access (any user in the Authenticated Users group) can replace the Apache2.2 service executable with a malicious file. The attacker does not need administrative privileges. After replacement, the attacker must restart the service (or wait for a system restart) to trigger execution of the malicious binary with NT SYSTEM privileges. [1]

Impact

Successful exploitation allows the attacker to execute arbitrary code with NT SYSTEM authority, the highest privilege level on Windows. This leads to full compromise of the system, including complete control over confidentiality, integrity, and availability. [1]

Mitigation

Advantech has not released a patch as of the publication date (2021-12-22). Users should restrict permissions on the C:\R-SeeNet directory to prevent unauthorized modifications, or monitor for unauthorized file changes. The vulnerability is not listed on CISA's Known Exploited Vulnerabilities (KEV) catalog as of this writing. [1]

AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.