CVE-2017-20007

Ingeteam INGEPAC DA AU AUC_1.13.0.28 (and before) web application allows access to a certain path that contains sensitive information that could be used by an attacker to execute more sophisticated attacks. An unauthenticated remote attacker with access to the deviceĀ“s web service could exploit this vulnerability in order to obtain different configuration files.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:ingeteam:ingepac_da_au_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:ingeteam:ingepac_da_au:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-10-25 14:15

Updated : 2024-02-28 18:48


NVD link : CVE-2017-20007

Mitre link : CVE-2017-20007

CVE.ORG link : CVE-2017-20007


JSON object : View

Products Affected

ingeteam

  • ingepac_da_au
  • ingepac_da_au_firmware
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor