In PEPPERL+FUCHS WirelessHART-Gateway <= 3.0.7 the filename parameter is vulnerable to unauthenticated path traversal attacks, enabling read access to arbitrary files on the server.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://cert.vde.com/en-us/advisories/vde-2021-027 |
History
Tue, 17 Sep 2024 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | A vulnerability may allow remote attackers to read arbitrary files on the server of the WirelessHART-Gateway | A vulnerability may allow remote attackers to read arbitrary files on the server of the WirelessHART-Gateway |
MITRE
Status: PUBLISHED
Assigner: CERTVDE
Published: 2021-08-31T10:32:52.841146Z
Updated: 2024-09-17T01:36:42.946Z
Reserved: 2021-05-24T00:00:00
Link: CVE-2021-33555
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-08-31T11:15:07.277
Modified: 2024-11-21T06:09:05.300
Link: CVE-2021-33555
Redhat
No data.