An issue was discovered in Eaton xComfort Ethernet Communication Interface (ECI) Versions 1.07 and prior. By accessing a specific uniform resource locator (URL) on the webserver, a malicious user may be able to access files without authenticating.
References
Link | Resource |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-17-061-01 | Mitigation Third Party Advisory US Government Resource |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2017-03-14T09:02:00
Updated: 2017-03-14T08:57:01
Reserved: 2016-11-16T00:00:00
Link: CVE-2016-9368
JSON object: View
NVD Information
Status : Modified
Published: 2017-03-14T09:59:00.300
Modified: 2019-10-09T23:20:26.240
Link: CVE-2016-9368
JSON object: View
Redhat Information
No data.
CWE