A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05.11), CP-8050 MASTER MODULE (All versions < CPCI85 V05.11). The web server of affected devices fails to properly sanitize user input for the /sicweb-ajax/tmproot/ endpoint.
This could allow an authenticated remote attacker to traverse directories on the system and download arbitrary files. By exploring active session IDs, the vulnerability could potentially be leveraged to escalate privileges to the administrator role.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2023-10-10T10:21:26.106Z
Updated: 2024-08-02T19:30:24.061Z
Reserved: 2023-09-14T15:58:52.521Z
Link: CVE-2023-42796
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-10-10T11:15:12.150
Modified: 2024-11-21T08:23:10.387
Link: CVE-2023-42796
Redhat
No data.