Security Advisory

CVE-2018-18990

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-02-05 18:00:00
Last updated 2024-09-17 01:21:51
Assigner icscert
State PUBLISHED

Description

LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation. An attacker can leverage this vulnerability to disclose sensitive information under the context of the web server process.