An attacker could use specially crafted paths in a specific request to read or delete files from Relion 670 Series (versions 1p1r26, 1.2.3.17, 2.0.0.10, RES670 2.0.0.4, 2.1.0.1, and prior) outside the intended directory.
References
Link | Resource |
---|---|
https://www.us-cert.gov/ics/advisories/icsa-19-330-01 | Third Party Advisory US Government Resource |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: icscert
Published: 2019-11-27T22:05:47
Updated: 2019-11-27T22:05:47
Reserved: 2019-10-22T00:00:00
Link: CVE-2019-18253
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-11-27T23:15:10.867
Modified: 2023-05-16T21:02:25.137
Link: CVE-2019-18253
JSON object: View
Redhat Information
No data.
CWE