CVE-2024-8752

The Windows version of WebIQ 2.15.9 is affected by a directory traversal vulnerability that allows remote attackers to read any file on the system.
References
Link Resource
https://www.tenable.com/security/research/tra-2024-38 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:smart-hmi:webiq:2.15.9:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

20 Sep 2024, 22:42

Type Values Removed Values Added
First Time Microsoft windows
Smart-hmi webiq
Smart-hmi
Microsoft
References () https://www.tenable.com/security/research/tra-2024-38 - () https://www.tenable.com/security/research/tra-2024-38 - Exploit, Third Party Advisory
CWE CWE-22
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:smart-hmi:webiq:2.15.9:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

16 Sep 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-16 16:15

Updated : 2024-09-20 22:42


NVD link : CVE-2024-8752

Mitre link : CVE-2024-8752


JSON object : View

Products Affected

microsoft

  • windows

smart-hmi

  • webiq
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')