The SCADA server in Ecava IntegraXor before 4.1.4369 allows remote attackers to read arbitrary project backup files via a crafted URL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Integraxor | Ecava | * | 4.1.4360 (including) |
Integraxor | Ecava | 3.5.3900.5 (including) | 3.5.3900.5 (including) |
Integraxor | Ecava | 3.5.3900.10 (including) | 3.5.3900.10 (including) |
Integraxor | Ecava | 3.6.4000.0 (including) | 3.6.4000.0 (including) |
Integraxor | Ecava | 3.60.4061 (including) | 3.60.4061 (including) |
Integraxor | Ecava | 3.71 (including) | 3.71 (including) |
Integraxor | Ecava | 3.71.4200 (including) | 3.71.4200 (including) |
Integraxor | Ecava | 3.72 (including) | 3.72 (including) |
Integraxor | Ecava | 4.00 (including) | 4.00 (including) |
Integraxor | Ecava | 4.1 (including) | 4.1 (including) |