vendor:
Intelligent Power Manager
by:
Emre ÖVÜNÇ
9.8
CVSS
CRITICAL
Directory Traversal
22
CWE
Product Name: Intelligent Power Manager
Affected Version From: 1.6
Affected Version To: 1.6
Patch Exists: YES
Related CWE: CVE-2018-12031
CPE: a:eaton:intelligent_power_manager:1.6
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Windows
2018
Eaton Intelligent Power Manager 1.6 – Directory Traversal
To exploit vulnerability, someone could use 'https://[HOST]/server/node_upgrade_srv.js?action=downloadFirmware&firmware=/../../../../../../../../../../' request to get some informations from the target.
Mitigation:
Ensure that user-supplied input is validated and filtered before being used in file system operations.