CVE-2013-0653: Path Traversal
Directory traversal vulnerability in substitute.bcl in the WebView CimWeb subsystem in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to read arbitrary files via a crafted packet.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0653?
CVE-2013-0653 has been classified as a medium severity vulnerability due to its potential to allow unauthorized file access.
How do I fix CVE-2013-0653?
To fix CVE-2013-0653, update to a patched version of GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY or Proficy Process Systems.
Which versions of software are affected by CVE-2013-0653?
CVE-2013-0653 affects GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY versions 4.01 through 8.0, as well as Proficy Process Systems.
What kind of attack can exploit CVE-2013-0653?
CVE-2013-0653 can be exploited by remote attackers using crafted packets to perform a directory traversal attack.
Is CVE-2013-0653 a network-based vulnerability?
Yes, CVE-2013-0653 is a network-based vulnerability that can be exploited over the internet or local networks.