An issue was discovered in ExecuteCommand() in AVEVA Edge (formerly InduSoft Web Studio) versions R2020 and prior that allows unauthenticated arbitrary commands to be executed.
| Software | From | Fixed in |
|---|---|---|
| aveva / edge | 2020 | 2020.x |
| aveva / edge | - | 2020 |
| aveva / edge | 2020-r2 | 2020-r2.x |