Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Honeywell XL Web II controller XL1000C500 XLWebExe-2-01-00 and prior, and XLWeb 500 XLWebExe-1-02-08 and prior. A user without authenticating can make a directory traversal attack by accessing a specific URL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Honeywell XL Web II Controller 路径遍历漏洞
Vulnerability Description
Honeywell XL Web II Controller是美国霍尼韦尔国际(Honeywell International)公司的一套基于Web主要应用于能源、制造业中的SCADA系统。 Honeywell XL Web II Controller XLWebExe-2-01-00及之前的版本和XLWeb 500 XLWebExe-1-02-08及之前的版本中存在路径遍历漏洞。未授权的攻击者可借助特制的URL利用该漏洞读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A