Server (CCS) contains a path traversal vulnerability
that could allow an authenticated remote attacker to access and download
arbitrary files from the server where CCS is installed.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-8914 | A vulnerability has been identified in Control Center Server (CCS) (All versions < V1.5.0). The DOWNLOADS section in the web interface of the Control Center Server (CCS) contains a path traversal vulnerability that could allow an authenticated remote attacker to access and download arbitrary files from the server where CCS is installed. |
No history.
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2024-08-05T02:09:39.684Z
Reserved: 2019-11-26T00:00:00.000Z
Link: CVE-2019-19290
No data.
Status : Modified
Published: 2020-03-10T20:15:19.057
Modified: 2026-06-17T02:26:26.477
Link: CVE-2019-19290
No data.
OpenCVE Enrichment
No data.
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
EUVD