CVE-2019-18253: Path Traversal
Published Nov 27, 2019
·Updated
An attacker could use specially crafted paths in a specific request to read or delete files from Relion 670 Series (versions 1p1r26, 1.2.3.17, 2.0.0.10, RES670 2.0.0.4, 2.1.0.1, and prior) outside the intended directory.
Affected Software
5 affected components
hitachienergy Relion 670 Firmware<1p1r26
hitachienergy Relion 670 Firmware>=1.2<1.2.3.17
hitachienergy Relion 670 Firmware>=2.0<2.0.0.10
hitachienergy Relion 670 Firmware>=2.1<2.1.0.1
hitachienergy Relion 670
Event History
Nov 27, 2019
CVE Published
via MITRE·10:05 PM
Data Sourced
via MITRE·10:05 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-18253?
CVE-2019-18253 is a vulnerability that allows an attacker to read or delete files from Relion 670 Series systems.
2
What is the severity of CVE-2019-18253?
CVE-2019-18253 has a severity level of critical.
3
Which software versions are affected by CVE-2019-18253?
CVE-2019-18253 affects Relion 670 Series systems versions 1p1r26, 1.2.3.17, 2.0.0.10, 2.0.0.4, 2.1.0.1, and prior.
4
How can an attacker exploit CVE-2019-18253?
An attacker can exploit CVE-2019-18253 by using specially crafted paths in a specific request.
5
How can I protect my Relion 670 Series system from CVE-2019-18253?
To protect your Relion 670 Series system from CVE-2019-18253, ensure that you have installed the latest firmware update provided by Hitachienergy.