CVE-2016-4532

Properties

Published:
08.06.2016
Updated:
11.06.2016
Patch available:
Severity:
Medium
CVSS vector:
(AV:N/AC:L/Au:N/C:P/I:P/A:N)
Product:
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada
trihedral: vtscada

Vulnerability description

Directory traversal vulnerability in the WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to read arbitrary files via a crafted pathname.

References:

MISC:https://ics-cert.us-cert.gov/advisories/ICSA-16-159-01