Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-58683
HistoryMay 26, 2022 - 12:00 a.m.

Open Automation Software OAS Platform信息泄露漏洞

2022-05-2600:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
automation software oas
industrial iot suite
information disclosure
version v16.00.0112
oas engine entransferfiles
network requests
arbitrary files
security vulnerability

EPSS

0.002

Percentile

58.7%

Open Automation Software OAS Platform is an industrial Internet of Things (IoT) suite from Open Automation Software, Inc. An information disclosure vulnerability exists in Open Automation Software OAS Platform version V16.00.0112, which stems from an information disclosure issue in the OAS Engine Entransferfiles feature that could be exploited by an attacker by sending a series of special network requests to read arbitrary files.

EPSS

0.002

Percentile

58.7%

Related for CNVD-2022-58683