CVE-2017-16787: Infoleak
Published Dec 15, 2017
·Updated
The Web Configuration Utility in Meinberg LANTIME devices with firmware before 6.24.004 allows remote attackers to read arbitrary files by leveraging failure to restrict URL access.
Affected Software
2 affected components
Meinbergglobal Lantime Firmware<6.24.004
Meinbergglobal Lantime
Event History
Dec 15, 2017
CVE Published
06:29 PM
Frequently Asked Questions
1
What is the severity of CVE-2017-16787?
CVE-2017-16787 is rated as a high severity vulnerability due to its potential for remote exploitation.
2
How do I fix CVE-2017-16787?
To fix CVE-2017-16787, upgrade the firmware of Meinberg LANTIME devices to version 6.24.004 or later.
3
What type of attack does CVE-2017-16787 allow?
CVE-2017-16787 allows remote attackers to read arbitrary files on affected Meinberg LANTIME devices.
4
Which devices are affected by CVE-2017-16787?
Meinberg LANTIME devices running firmware versions prior to 6.24.004 are affected by CVE-2017-16787.
5
What is the impact of CVE-2017-16787?
The impact of CVE-2017-16787 includes unauthorized access to sensitive file contents on vulnerable devices.