LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation. An attacker can leverage this vulnerability to disclose sensitive information under the context of the web server process.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2019-02-05T18:00:00Z

Updated: 2024-09-17T01:21:51.337Z

Reserved: 2018-11-06T00:00:00

Link: CVE-2018-18990

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-02-05T18:29:00.587

Modified: 2019-10-09T23:37:32.193

Link: CVE-2018-18990

cve-icon Redhat

No data.