High severity7.8NVD Advisory· Published Apr 23, 2021· Updated Jun 17, 2026
CVE-2021-22682
CVE-2021-22682
Description
Cscape (All versions prior to 9.90 SP4) is configured by default to be installed for all users, which allows full permissions, including read/write access. This may allow unprivileged users to modify the binaries and configuration files and lead to local privilege escalation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- Cscape/Cscapedescription
cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:hornerautomation:cscape:*:*:*:*:*:*:*:*range: <9.90
- cpe:2.3:a:hornerautomation:cscape:9.90:-:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp1:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp2:*:*:*:*:*:*
- cpe:2.3:a:hornerautomation:cscape:9.90:sp3:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- us-cert.cisa.gov/ics/advisories/icsa-21-112-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.