Directory traversal vulnerability in ICONICS WebHMI 9 and earlier allows remote attackers to read configuration files, and consequently discover password hashes, via unspecified vectors.
References
Link | Resource |
---|---|
https://ics-cert.us-cert.gov/advisories/ICSA-16-091-01 | Third Party Advisory US Government Resource |
Configurations
Information
Published : 2016-04-01 16:59
Updated : 2016-04-04 08:59
NVD link : CVE-2016-2289
Mitre link : CVE-2016-2289
JSON object : View
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Products Affected
iconics
- webhmi