Frauscher Sensortechnik GmbH FDS001 for FAdC/FAdCi v1.3.3 and all previous versions are vulnerable to a path traversal vulnerability of the web interface by a crafted URL without authentication. This enables an remote attacker to read all files on the filesystem of the FDS001 device.
References
Link | Resource |
---|---|
https://cert.vde.com/en/advisories/VDE-2023-011/ | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: CERTVDE
Published: 2023-07-05T09:04:28.091Z
Updated: 2023-07-05T09:04:28.091Z
Reserved: 2023-05-25T07:17:13.633Z
Link: CVE-2023-2880
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-07-05T10:15:09.567
Modified: 2023-07-12T15:39:38.407
Link: CVE-2023-2880
JSON object: View
Redhat Information
No data.
CWE