First published: Fri Aug 25 2017(Updated: )
A Directory Traversal issue was discovered in SpiderControl SCADA Web Server. An attacker may be able to use a simple GET request to perform a directory traversal into system files.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Ininet Solutions Scada Web Server |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-12694 has been classified as a medium severity vulnerability.
To mitigate CVE-2017-12694, you should apply the latest security patches provided by SpiderControl for their SCADA Web Server software.
CVE-2017-12694 is a Directory Traversal vulnerability allowing unauthorized access to system files.
CVE-2017-12694 affects users of SpiderControl SCADA Web Server software.
An attacker can exploit CVE-2017-12694 by sending a specially crafted GET request to gain access to restricted directories.