PT-2017-13208 · Abb · Abb Fox515T
CVE-2017-14025
·
Publicado
2017-11-06
·
Atualizado
2023-05-16
CVSS v3.1
5.5
Média
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
ABB FOX515T version 1.0
Description
An Improper Input Validation issue has been identified, allowing a local attacker to provide a malicious parameter to the script that is not validated by the application. This could enable the attacker to retrieve any file on the server.
Recommendations
For ABB FOX515T version 1.0, consider restricting access to the vulnerable script to minimize the risk of exploitation. As a temporary workaround, avoid using malicious parameters in the script until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Abb Fox515T