CirCarLife.Scada.HTTP.Credential.Information.Disclosure

description-logoDescription

This indicates an attack attempt to exploit an Information Disclosure Vulnerability in CirCarLife Scada.
The vulnerability is due to an error in the vulnerable application when handling a maliciously crafted request. An attacker can exploit this to access arbitrary files on the affected machine via a crafted request.

affected-products-logoAffected Products

CirCarLife Scada before version 4.3

Impact logoImpact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor provided patch or update for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-12-19 15.748 Default_action:pass:drop
2019-11-21 15.728 Sig Added
2019-11-20 15.727

References

45384