Medium severity6.6NVD Advisory· Published Jun 9, 2021· Updated Jun 17, 2026
CVE-2021-32942
CVE-2021-32942
Description
The vulnerability could expose cleartext credentials from AVEVA InTouch Runtime 2020 R2 and all prior versions (WindowViewer) if an authorized, privileged user creates a diagnostic memory dump of the process and saves it to a non-protected location.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5- cpe:2.3:a:aveva:intouch_2017:-:update3:*:*:*:*:*:*
cpe:2.3:a:aveva:intouch_2020:-:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:aveva:intouch_2020:-:*:*:*:*:*:*:*
- cpe:2.3:a:aveva:intouch_2020:r2:*:*:*:*:*:*:*
- Range: <=2020 R2
- AVEVA/InTouchv5Range: unspecified
Patches
Vulnerability mechanics
References
2- us-cert.cisa.gov/ics/advisories/icsa-21-159-03nvdPatchThird Party AdvisoryUS Government Resource
- www.aveva.com/en/support/cyber-security-updates/nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.