CVE-2017-9664
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In ABB SREA-01 revisions A, B, C: application versions up to 3.31.5, and SREA-50 revision A: application versions up to 3.32.8, an attacker may access internal files of ABB SREA-01 and SREA-50 legacy remote monitoring tools without any authorization over the network using a HTTP request which refers to files using ../../ relative paths. Once the internal password file is retrieved, the password hash can be identified using a brute force attack. There is also an exploit allowing running of commands after authorization.
En ABB SREA-01 revisiones A, B, C: en versiones de la aplicación hasta la 3.31.5 y en SREA-50 revisión A: en versiones de la aplicación hasta la 3.32.8, un atacante podría acceder a archivos internos de las herramientas de monitorización antiguas remotas de ABB SREA-01 y SREA-50 sin autorización a través de la red mediante una petición HTTP que se refiere a los archivos que emplean rutas ../../ relativas. Una vez que se recupera el archivo interno de contraseñas, el hash de la contraseña se puede identificar mediante un ataque de fuerza bruta. También hay un exploit que permite ejecutar comandos tras la autorización.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-06-14 CVE Reserved
- 2018-05-24 CVE Published
- 2023-10-15 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
- CWE-23: Relative Path Traversal
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/100260 | Third Party Advisory | |
https://ics-cert.us-cert.gov/advisories/ICSA-17-222-05 | Mitigation |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Abb Search vendor "Abb" | Srea-50 Firmware Search vendor "Abb" for product "Srea-50 Firmware" | <= 3.32.8 Search vendor "Abb" for product "Srea-50 Firmware" and version " <= 3.32.8" | - |
Affected
| in | Abb Search vendor "Abb" | Srea-50 Search vendor "Abb" for product "Srea-50" | - | - |
Safe
|
Abb Search vendor "Abb" | Srea-01 Firmware Search vendor "Abb" for product "Srea-01 Firmware" | <= 3.31.5 Search vendor "Abb" for product "Srea-01 Firmware" and version " <= 3.31.5" | - |
Affected
| in | Abb Search vendor "Abb" | Srea-01 Search vendor "Abb" for product "Srea-01" | - | - |
Safe
|