CVE-2016-9339

An issue was discovered in INTERSCHALT Maritime Systems VDR G4e Versions 5.220 and prior. External input is used to construct paths to files and directories without properly neutralizing special elements within the pathname that could allow an attacker to read files on the system, a Path Traversal.
References
Link Resource
https://ics-cert.us-cert.gov/advisories/ICSA-16-343-04 Third Party Advisory US Government Resource
http://www.securityfocus.com/bid/94776 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:macgregor:interschalt_vdr_g4e_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:macgregor:interschalt_vdr_g4e:-:*:*:*:*:*:*:*

Information

Published : 2017-02-13 13:59

Updated : 2021-06-22 13:25


NVD link : CVE-2016-9339

Mitre link : CVE-2016-9339


JSON object : View

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Advertisement

dedicated server usa

Products Affected

macgregor

  • interschalt_vdr_g4e_firmware
  • interschalt_vdr_g4e