ZeroHour

CVE-2018-18990

CVSS 3.0
5.3 medium
EPSS
39%p99
Published
()
Modified
Description

LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation. An attacker can leverage this vulnerability to disclose sensitive information under the context of the web server process.

Vendors
lcds
Products
laquis scada
Weakness
CWE-23, CWE-22
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.