ID

VAR-202009-1677


TITLE

A directory traversal vulnerability exists in the intelligent meter copy management system of Qingdao Automation Instrument Co., Ltd. (CNVD-2020-49002)

Trust: 0.6

sources: CNVD: CNVD-2020-49002

DESCRIPTION

The intelligent instrument collection management system is an industrial control management system that controls statistics and manages some data in the energy industry. A directory traversal vulnerability exists in the intelligent meter copy management system of Qingdao Automation Instrument Co., Ltd., and attackers can use the vulnerability to read the content of any file on the server.

Trust: 0.6

sources: CNVD: CNVD-2020-49002

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2020-49002

AFFECTED PRODUCTS

vendor:qingdao automation instrumentmodel:intelligent instrument collection management systemscope:eqversion:3.5

Trust: 0.6

sources: CNVD: CNVD-2020-49002

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2020-49002
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2020-49002
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:P/I:N/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: NONE
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2020-49002

PATCH

title:A directory traversal vulnerability exists in the intelligent instrument collection management system of Qingdao Automation Instrument Co., Ltd.url:https://www.cnvd.org.cn/patchinfo/show/227075

Trust: 0.6

sources: CNVD: CNVD-2020-49002

EXTERNAL IDS

db:CNVDid:CNVD-2020-49002

Trust: 0.6

sources: CNVD: CNVD-2020-49002

SOURCES

db:CNVDid:CNVD-2020-49002

LAST UPDATE DATE

2022-05-04T09:08:54.253000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2020-49002date:2020-08-28T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2020-49002date:2020-09-05T00:00:00