Vulnerabilities > CVE-2017-20007 - Unspecified vulnerability in Ingeteam Ingepac DA AU Firmware

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
ingeteam

Summary

Ingeteam INGEPAC DA AU AUC_1.13.0.28 (and before) web application allows access to a certain path that contains sensitive information that could be used by an attacker to execute more sophisticated attacks. An unauthenticated remote attacker with access to the device´s web service could exploit this vulnerability in order to obtain different configuration files.

Vulnerable Configurations

Part Description Count
OS
Ingeteam
1
Hardware
Ingeteam
1