Automated Logic Corporation Products Directory Traversal and Arbitrary File Upload Vulnerabilities
BID:100452
CVE-2017-9640 | CVE-2017-9650 |Info
Automated Logic Corporation Products Directory Traversal and Arbitrary File Upload Vulnerabilities
| Bugtraq ID: | 100452 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-9640 CVE-2017-9650 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 22 2017 12:00AM |
| Updated: | Aug 22 2017 12:00AM |
| Credit: | Gjoko Krstic from Zero Science Lab |
| Vulnerable: |
Automated Logic Corporation (ALC) WebCTRL 6.5 Automated Logic Corporation (ALC) WebCTRL 6.1 Automated Logic Corporation (ALC) WebCTRL 6.0 Automated Logic Corporation (ALC) WebCTRL 5.5 Automated Logic Corporation (ALC) WebCTRL 5.2 Automated Logic Corporation (ALC) SiteScan Web 6.5 Automated Logic Corporation (ALC) SiteScan Web 6.1 Automated Logic Corporation (ALC) SiteScan Web 5.5 Automated Logic Corporation (ALC) SiteScan Web 5.2 Automated Logic Corporation (ALC) i-Vu 6.5 Automated Logic Corporation (ALC) i-Vu 6.0 Automated Logic Corporation (ALC) i-Vu 5.5 Automated Logic Corporation (ALC) i-Vu 5.2 |
| Not Vulnerable: | |
References
Automated Logic Corporation Products Directory Traversal and Arbitrary File Upload Vulnerabilities
References:
References:
- Automated Logic Corporation (ALC) Homepage (Automated Logic Corporation (ALC))
- ICSA-17-234-01: Automated Logic Corporation WebCTRL, i-VU, SiteScan (ICS CERT)