Intrusion Prevention

3S-Smart.CODESYS.Gateway.Server.Directory.Traversal

Description

This indicates an attack attempt to exploit a Directory Traversal vulnerability in SCADA 3S CoDeSys Gateway Server.
The vulnerability is due to insufficient sanitizing of requests messages in the application. A remote attacker can exploit this to upload and execute arbitrary files, via a crafted request.

Affected Products

SCADA 3S CoDeSys Gateway Server prior to 2.3.9.27

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

Currently we are unaware of any vendor supplied patch for this issue.

CVE References

CVE-2012-4705