PT-2017-13208 · Abb · Abb Fox515T
Published
2017-11-06
·
Updated
2023-05-16
·
CVE-2017-14025
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
ABB FOX515T version 1.0
Description
An Improper Input Validation issue has been identified, allowing a local attacker to provide a malicious parameter to the script that is not validated by the application. This could enable the attacker to retrieve any file on the server.
Recommendations
For ABB FOX515T version 1.0, consider restricting access to the vulnerable script to minimize the risk of exploitation. As a temporary workaround, avoid using malicious parameters in the script until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Abb Fox515T