CVE-2014-0752CWE-529

Ecava IntegraXor Exposure of Access Control List Files to an Unauthorized Control Sphere

High · published January 9, 2014

CVSS v2.0
7.5
EPSS
2%
Percentile
74.6
In the wild
Unconfirmed
What it is

The SCADA server in Ecava IntegraXor before 4.1.4369 allows remote attackers to read arbitrary project backup files via a crafted URL.

The record
Technical detail
CVSS v2.0
7.5 · HIGH
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS v4.0
Not supplied
EPSS
0.01628 · 74.6th percentile
Weakness
CWE-529 · Exposure of Access Control List Files to an Unauthorized Control Sphere
Published
2014-01-09T11:00Z
EPSS history
Timeline
  • 09 JAN 11:00Z
    Ecava IntegraXor Exposure of Access Control List Files to an Unauthorized Control Sphere
    cvelistv5