Vulnerabilities > CVE-2020-29666 - Unspecified vulnerability in Lanatmservice M3 ATM Monitoring System 6.1.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
lanatmservice

Summary

In Lan ATMService M3 ATM Monitoring System 6.1.0, due to a directory-listing vulnerability, a remote attacker can view log files, located in /websocket/logs/, that contain a user's cookie values and the predefined developer's cookie value.

Vulnerable Configurations

Part Description Count
Application
Lanatmservice
1