CVE-2013-0651
27.01.2013, 18:55
The Portal installation process in GE Intelligent Platforms Proficy Real-Time Information Portal stores sensitive information under the web root with insufficient access control, which allows remote attackers to read configuration files, and discover data-source credentials, via a direct request.Enginsight
Vendor | Product | Version |
---|---|---|
ge | intelligent_platforms_proficy_real-time_information_portal | - |
ge | intelligent_platforms_proficy_real-time_information_portal | 2.6 |
ge | intelligent_platforms_proficy_real-time_information_portal | 3.0 |
ge | intelligent_platforms_proficy_real-time_information_portal | 3.0:sp1 |
ge | intelligent_platforms_proficy_real-time_information_portal | 3.5 |
ge | intelligent_platforms_proficy_real-time_information_portal | 3.5:sp1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration