MultiFLEX M10a Controller Multiple Security Vulnerabilities
BID:101259
Info
MultiFLEX M10a Controller Multiple Security Vulnerabilities
| Bugtraq ID: | 101259 |
| Class: | Unknown |
| CVE: |
CVE-2017-14013 CVE-2017-14007 CVE-2017-14011 CVE-2017-14009 CVE-2017-14005 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 13 2017 12:00AM |
| Updated: | Oct 13 2017 12:00AM |
| Credit: | Maxim Rupp |
| Vulnerable: |
ProMinent MultiFLEX M10a Controller 0 |
| Not Vulnerable: | |
Exploit / POC
MultiFLEX M10a Controller Multiple Security Vulnerabilities
An attacker can exploit these issues through a browser or readily available tools. To exploit the cross-site request-forgery issue, the attacker must entice an unsuspecting victim into following a malicious URI.
An attacker can exploit these issues through a browser or readily available tools. To exploit the cross-site request-forgery issue, the attacker must entice an unsuspecting victim into following a malicious URI.
Solution / Fix
MultiFLEX M10a Controller Multiple Security Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
MultiFLEX M10a Controller Multiple Security Vulnerabilities
References:
References:
- ProMinent Home Page (ProMinent)
- Advisory (ICSA-17-285-01) ProMinent MultiFLEX M10a Controller (CERT)