Critical severity9.8NVD Advisory· Published Dec 30, 2021· Updated Jun 17, 2026
CVE-2021-45427
CVE-2021-45427
Description
Emerson XWEB 300D EVO 3.0.7--3ee403 is affected by: unauthenticated arbitrary file deletion due to path traversal. An attacker can browse and delete files without any authentication due to incorrect access control and directory traversal.
Affected products
3- cpe:2.3:o:emerson:xweb300d_evo_firmware:3.0.7:3ee403:*:*:*:*:*:*
- Emerson/XWEB 300D EVOdescription
- Range: 3.0.7--3ee403
Patches
Vulnerability mechanics
References
3- drive.google.com/file/d/1iusYdheb62dom0DnvAzEiNR-e4EXSf2k/viewnvdExploitThird Party Advisory
- drive.google.com/file/d/1IN7p9OKRgdszMVC1TKuZQDa4ySCPmQzO/viewnvdThird Party Advisory
- drive.google.com/file/d/1RegGlCrtyQwW9DUirAbPDiIHKBWgsBea/viewnvdThird Party Advisory
News mentions
0No linked articles in our index yet.