Schneider Electric Pelco VideoXpert Enterprise versions 2.0 and prior contain a directory traversal caused by insufficient input validation, letting unauthorized persons view web server files, exploit requires no authentication.
id: CVE-2017-9965
info:
name: Schneider Electric Pelco VideoXpert Enterprise 2.0 - Path Traversal
...