CVE-2011-4036
Published Dec 2, 2011
Last updated 13 years ago
Overview
- Description
- Directory traversal vulnerability in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier allows remote attackers to read arbitrary files via unspecified vectors.
- Source
- cret@cert.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-22
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:schneider-electric:vijeo_historian:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FA173AD2-52AF-4401-9A29-757B68168B4D", "versionEndIncluding": "4.30" }, { "criteria": "cpe:2.3:a:schneider-electric:vijeo_historian:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "00E3E11B-E433-4D89-9525-8159CEC30DC0" }, { "criteria": "cpe:2.3:a:schneider-electric:vijeo_historian:4.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2788D1E5-206A-4AC8-AA28-65E5EE268B59" }, { "criteria": "cpe:2.3:a:schneider-electric:vijeo_historian:4.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "99B88BED-7F2F-4F89-9BD1-B7EDC1608531" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:schneider-electric:citecthistorian:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "859A64AD-1FB2-4A7C-AE4D-26951FC050F9", "versionEndIncluding": "4.30" }, { "criteria": "cpe:2.3:a:schneider-electric:citecthistorian:4.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B491E331-B533-4E09-966E-45A3BE724C5A" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:schneider-electric:citectscada_reports:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "106C6198-C341-4B10-8788-A8FA51F137F1", "versionEndIncluding": "4.10" }, { "criteria": "cpe:2.3:a:schneider-electric:citectscada_reports:4.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38765B0B-9C09-4BC0-9E50-D0C6E8969A77" } ], "operator": "OR" } ] } ]