CVE-2010-4731
Absolute path traversal vulnerability in cgi-bin/read.cgi in WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms allows remote authenticated administrators to read arbitrary files via a full pathname in the file parameter, a different vulnerability than CVE-2009-4463.
Published:Feb 14, 2011
Last Modified:Apr 11, 2025
EPS:Feb 14, 2011
EPSS Score:0.00411
CVSS Score:6.8
Affected Products
Vendor
Product
Action
Vendor
Intellicom
Product
Netbiter Easyconnect Ec150
Intellicom
Netbiter Easyconnect Ec150
Vendor
Intellicom
Product
Netbiter Modbus Rtu-tcp Gateway Mb100
Intellicom
Netbiter Modbus Rtu-tcp Gateway Mb100
Vendor
Intellicom
Product
Netbiter Nb100
Intellicom
Netbiter Nb100
Vendor
Intellicom
Product
Netbiter Nb200
Intellicom
Netbiter Nb200
Vendor
Intellicom
Product
Netbiter Serial Ethernet Server Ss100
Intellicom
Netbiter Serial Ethernet Server Ss100
Vendor
Intellicom
Product
Netbiter Webscada Ws100
Intellicom
Netbiter Webscada Ws100
Vendor
Intellicom
Product
Netbiter Webscada Ws200
Intellicom
Netbiter Webscada Ws200
Exploits
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
