info: name: OpenPLC v3 Authenticated RCE (CVE-2021-31630) - Passive Check author: machevalia severity: high description:> Attempts to login with default credentials and upload a benign custom hardware layer. If upload and compilation succeed, the server is likely vulnerable to CVE-2021-31630. reference: - https://nvd.nist.gov/vuln/detail/CVE-2021-31630 - https://github.com/thiagorossener/openplc tags: iot,plc,auth,openplc,cve,cve2021,rce