CVE-2021-45427

Emerson XWEB 300D EVO 3.0.7--3ee403 is affected by: unauthenticated arbitrary file deletion due to path traversal. An attacker can browse and delete files without any authentication due to incorrect access control and directory traversal.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:emerson:xweb300d_evo_firmware:3.0.7:3ee403:*:*:*:*:*:*
cpe:2.3:h:emerson:xweb300d_evo:-:*:*:*:*:*:*:*

Information

Published : 2021-12-30 04:15

Updated : 2022-01-11 07:42


NVD link : CVE-2021-45427

Mitre link : CVE-2021-45427


JSON object : View

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Advertisement

dedicated server usa

Products Affected

emerson

  • xweb300d_evo_firmware
  • xweb300d_evo