CVE-2008-0175: High severity ge proficy real-time information portal vulnerability
Published Jan 29, 2008
·Updated
Unrestricted file upload vulnerability in GE Fanuc Proficy Real-Time Information Portal 2.6 and earlier allows remote attackers to execute arbitrary code by uploading a file with an executable extension to the main virtual directory.
Affected Software
1 affected component
GE Fanuc Proficy Real-Time Information Portal<=2.6
Event History
Jan 29, 2008
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0175?
CVE-2008-0175 is considered critical due to its ability to allow remote code execution.
2
How do I fix CVE-2008-0175?
To fix CVE-2008-0175, upgrade to a version of GE Fanuc Proficy Real-Time Information Portal later than 2.6.
3
Which versions of GE Fanuc Proficy Real-Time Information Portal are affected by CVE-2008-0175?
CVE-2008-0175 affects all versions of GE Fanuc Proficy Real-Time Information Portal up to and including version 2.6.
4
What type of vulnerability is CVE-2008-0175?
CVE-2008-0175 is categorized as an unrestricted file upload vulnerability.
5
What can attackers do with CVE-2008-0175?
Attackers can exploit CVE-2008-0175 to upload malicious files and execute arbitrary code on the server.