CVE-2020-25176: Rockwell Automation ISaGRAF5 Runtime Relative Path Traversal
Some commands used by the Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x eXchange Layer (IXL) protocol perform various file operations in the file system. Since the parameter pointing to the file name is not checked for reserved characters, it is possible for a remote, unauthenticated attacker to traverse an application’s directory, which could lead to remote code execution.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2020-25176?
CVE-2020-25176 has been rated as high severity due to its potential for remote exploitation.
How do I fix CVE-2020-25176?
To fix CVE-2020-25176, you should update the affected Rockwell Automation ISaGRAF Runtime versions to the latest patched versions.
What systems are affected by CVE-2020-25176?
CVE-2020-25176 affects Rockwell Automation ISaGRAF Runtime Versions 4.x and 5.x as well as specific Schneider Electric firmware versions.
Can CVE-2020-25176 be exploited remotely?
Yes, CVE-2020-25176 can be exploited remotely, allowing an attacker to perform unauthorized file operations.
What types of file operations are potentially vulnerable in CVE-2020-25176?
CVE-2020-25176 allows for various file operations, including reading and writing files due to insufficient validation of file name parameters.