Emerson XWEB 300D EVO 3.0.7--3ee403 is affected by: unauthenticated arbitrary file deletion due to path traversal. An attacker can browse and delete files without any authentication due to incorrect access control and directory traversal.
2021-12-30T12:15:07.563
2024-11-21T06:32:12.123
Modified
CVSSv3.1: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | emerson | xweb300d_evo_firmware | 3.0.7 | Yes |
Hardware | emerson | xweb300d_evo | - | No |