PT-2020-14635 · Siemens · Spectrum Power 4

Published

2020-09-09

·

Updated

2020-09-14

·

CVE-2020-15790

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Spectrum Power 4 versions prior to V4.70 SP8
Description A vulnerability has been identified that could make the web server susceptible to a directory listing attack if it is configured in an insecure manner.
Recommendations For versions prior to V4.70 SP8, update to version V4.70 SP8 or later to resolve the issue. As a temporary workaround, consider configuring the web server in a secure manner to minimize the risk of exploitation.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-15790

Affected Products

Spectrum Power 4