PT-2017-13190 · Loytec · Loytec Lvis-3Me
Davy Douhine
·
Publicado
2017-10-05
·
Atualizado
2019-10-09
·
CVE-2017-13996
CVSS v3.1
8.8
Alta
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
LOYTEC LVIS-3ME versions prior to 6.2.0
Description
A Relative Path Traversal issue was discovered in the web user interface, which fails to prevent access to critical files that non-administrative users should not have access to. This could allow an attacker to create or modify files or execute arbitrary code.
Recommendations
For LOYTEC LVIS-3ME versions prior to 6.2.0, update to version 6.2.0 or later to resolve the issue.
Correção
Relative Path Traversal
Path traversal
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Loytec Lvis-3Me