Directory traversal vulnerability in the FTP server on Honeywell Excel Web XL1000C50 52 I/O, XL1000C100 104 I/O, XL1000C500 300 I/O, XL1000C1000 600 I/O, XL1000C50U 52 I/O UUKL, XL1000C100U 104 I/O UUKL, XL1000C500U 300 I/O UUKL, and XL1000C1000U 600 I/O UUKL controllers before 2.04.01 allows remote attackers to read files under the web root, and consequently obtain administrative login access, via a crafted pathname.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2015-03-31T01:00:00
Updated: 2024-08-06T04:26:11.564Z
Reserved: 2015-01-10T00:00:00
Link: CVE-2015-0984
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-03-31T01:59:36.910
Modified: 2024-11-21T02:24:04.940
Link: CVE-2015-0984
Redhat
No data.