10
CVSSv2

CVE-2012-4705

Published: 24/02/2013 Updated: 21/05/2013
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Directory traversal vulnerability in 3S CODESYS Gateway-Server prior to 2.3.9.27 allows remote malicious users to execute arbitrary code via vectors involving a crafted pathname.

Vulnerable Product Search on Vulmon Subscribe to Product

3s-software codesys gateway-server 2.3.9.1

3s-software codesys gateway-server 2.3.8.2

3s-software codesys gateway-server 2.3.5.1

3s-software codesys gateway-server 2.3.9

3s-software codesys gateway-server 2.3.9.19

3s-software codesys gateway-server 2.3.9.3

3s-software codesys gateway-server 2.3.9.2

3s-software codesys gateway-server 2.3.5.3

3s-software codesys gateway-server 2.3.5.2

3s-software codesys gateway-server 2.3.9.18

3s-software codesys gateway-server 2.3.8.1

3s-software codesys gateway-server 2.3.8.0

3s-software codesys gateway-server

3s-software codesys gateway-server 2.3.9.5

3s-software codesys gateway-server 2.3.9.4

3s-software codesys gateway-server 2.3.7.0

3s-software codesys gateway-server 2.3.6.0

Exploits

## # This module requires Metasploit: metasploitcom/download # Current source: githubcom/rapid7/metasploit-framework # metasploitcom ## require 'msf/core' class MetasploitModule < Msf::Exploit::Remote Rank = ExcellentRanking include Msf::Exploit::EXE include Msf::Exploit::FileDropper include Msf::Exploit::Re ...