Unrated severityNVD Advisory· Published Jul 24, 2018· Updated Sep 17, 2024
CVE-2018-8859
CVE-2018-8859
Description
Echelon SmartServer 1 all versions, SmartServer 2 all versions prior to release 4.11.007, i.LON 100 all versions, and i.LON 600 all versions. An attacker can bypass the required authentication specified in the security configuration file by including extra characters in the directory name when specifying the directory to be accessed. This vulnerability does not affect the i.LON 600 product.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- ics-cert.us-cert.gov/advisories/ICSA-18-200-03mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.