CWE-22: Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) vulnerability exists that could allow an authenticated user with access to the device’s web interface to corrupt files and impact device functionality when sending a crafted HTTP request.
2024-06-12T17:15:50.853
2024-11-21T09:23:05.690
Modified
CVSSv3.1: 8.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | schneider-electric | sage_rtu_firmware | < c3414-500-s02k5_p9 | Yes |
Hardware | schneider-electric | sage_1410 | - | No |
Hardware | schneider-electric | sage_1430 | - | No |
Hardware | schneider-electric | sage_1450 | - | No |
Hardware | schneider-electric | sage_2400 | - | No |
Hardware | schneider-electric | sage_3030_magnum | - | No |
Hardware | schneider-electric | sage_4400 | - | No |