PT-2024-1448 · Unknown · Rapid Scada
Noam Moshe
·
Published
2024-01-11
·
Updated
2024-02-07
·
CVE-2024-21852
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Rapid SCADA versions prior to Version 5.8.4
Description
The issue is related to a Zip Slip vulnerability in the unpacking routine, allowing an attacker to supply a malicious configuration file and achieve remote code execution. This can be done by exploiting the incorrect restriction of the directory path name with limited access when extracting files from archives, enabling a remote attacker to execute arbitrary code by sending a specially crafted HTTP request.
Recommendations
For versions prior to Version 5.8.4, update to Version 5.8.4 or later to resolve the issue. As a temporary workaround, consider restricting access to the unpacking routine or disabling the use of archived files until a patch is applied. Avoid using the vulnerable configuration file handling mechanism until the issue is resolved.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Rapid Scada