Directory traversal vulnerability in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier allows remote attackers to read arbitrary files via unspecified vectors.
2011-12-02T11:55:05.607
2025-04-11T00:51:21.963
Deferred
CVSSv2: 5.0 (MEDIUM)
AV:N/AC:L/Au:N/C:P/I:N/A:N
10.0
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | schneider-electric | vijeo_historian | ≤ 4.30 | Yes |
| Application | schneider-electric | vijeo_historian | 4.0 | Yes |
| Application | schneider-electric | vijeo_historian | 4.10 | Yes |
| Application | schneider-electric | vijeo_historian | 4.20 | Yes |
| Application | schneider-electric | citecthistorian | ≤ 4.30 | Yes |
| Application | schneider-electric | citecthistorian | 4.20 | Yes |
| Application | schneider-electric | citectscada_reports | ≤ 4.10 | Yes |
| Application | schneider-electric | citectscada_reports | 4.0 | Yes |