CVE Database
/

CVE-2018-18990

Back to search

CVE-2018-18990

Published: Feb 5, 2019

Modified: Sep 17, 2024

PUBLISHED

Description

LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation. An attacker can leverage this vulnerability to disclose sensitive information under the context of the web server process.

VendorProductVersions

ICS-CERT

LCDS Laquis SCADA

affected
All versions prior to version 4.1.0.4150

Weaknesses (CWE)

References

106634
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now