There are multiple ways in
LCDS LAquis SCADA for an attacker to access locations outside of their own directory.
Fixes

Solution

LCDS recommends users update to version 4.7.1.371 or newer of LAquis SCADA. https://laquisscada.com/ which has been configured to resolve the reported path traversal issues.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2024-08-01T21:03:10.607Z

Reserved: 2024-05-16T23:41:33.314Z

Link: CVE-2024-5040

cve-icon Vulnrichment

Updated: 2024-08-01T21:03:10.607Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-21T21:15:08.370

Modified: 2024-11-21T09:46:50.223

Link: CVE-2024-5040

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2025-07-12T22:44:44Z