A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The SFTP service (default port 22/tcp) of the Control Center Server (CCS) contains an authentication bypass vulnerability. A remote attacker with network access to the CCS server could exploit this vulnerability to read data from the EDIR directory (for example, the list of all configured stations).
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: siemens

Published: 2019-12-12T19:08:49

Updated: 2024-01-09T09:56:15.845Z

Reserved: 2019-10-23T00:00:00


Link: CVE-2019-18341

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-12-12T19:15:20.670

Modified: 2024-01-09T10:15:10.357


Link: CVE-2019-18341

JSON object: View

cve-icon Redhat Information

No data.

CWE