Описание
Directory traversal vulnerability in Tridium Niagara AX Framework allows remote attackers to read files outside of the intended images, nav, and px folders by leveraging incorrect permissions, as demonstrated by reading the config.bog file.
Ссылки
- Permissions Required
- Broken LinkVendor Advisory
- Permissions Required
- Broken LinkVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:tridium:niagara_ax:*:*:*:*:*:*:*:*
EPSS
Процентиль: 39%
0.00173
Низкий
5 Medium
CVSS2
Дефекты
CWE-22
Связанные уязвимости
github
больше 3 лет назад
Directory traversal vulnerability in Tridium Niagara AX Framework allows remote attackers to read files outside of the intended images, nav, and px folders by leveraging incorrect permissions, as demonstrated by reading the config.bog file.
EPSS
Процентиль: 39%
0.00173
Низкий
5 Medium
CVSS2
Дефекты
CWE-22