CVE-2014-0752CWE-529
Ecava IntegraXor Exposure of Access Control List Files to an Unauthorized Control Sphere
High · published January 9, 2014
What it is
The SCADA server in Ecava IntegraXor before 4.1.4369 allows remote attackers to read arbitrary project backup files via a crafted URL.
The record
Technical detail
- CVSS v2.0
- 7.5 · HIGH
- Vector
- AV:N/AC:L/Au:N/C:P/I:P/A:P
- CVSS v4.0
- Not supplied
- EPSS
- 0.01628 · 74.6th percentile
- Weakness
- CWE-529 · Exposure of Access Control List Files to an Unauthorized Control Sphere
- Published
- 2014-01-09T11:00Z
EPSS history
Timeline