CVE-2014-2377
15.09.2014, 14:55
Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to discover full pathnames via an application tag.Enginsight
Vendor | Product | Version |
---|---|---|
ecava | integraxor | 𝑥 ≤ 4.1.4360 |
ecava | integraxor | 𝑥 ≤ 4.1.4392 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-526 - Exposure of Sensitive Information Through Environmental VariablesEnvironmental variables may contain sensitive information about a remote server.
- CWE-200 - Exposure of Sensitive Information to an Unauthorized ActorThe product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.