HIGH · 9.0

CVE-2010-4732

cgi-bin/read.cgi in WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms allows remote au...

Vulnerability Description

cgi-bin/read.cgi in WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms allows remote authenticated administrators to execute arbitrary code by using a config.html 2.conf action to replace the logo page's GIF image file with a file containing this code, a different vulnerability than CVE-2009-4463.

CVSS Score

9.0

HIGH

AV:N/AC:L/Au:S/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
IntellicomNetbiter Easyconnect Ec150All versions
IntellicomNetbiter Modbus Rtu-Tcp Gateway Mb100All versions
IntellicomNetbiter Serial Ethernet Server Ss100All versions
IntellicomNetbiter Webscada Ws100All versions
IntellicomNetbiter Webscada Ws200All versions
IntellicomNetbiter Nb100All versions
IntellicomNetbiter Nb200All versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2010-4732?

CVE-2010-4732 is a vulnerability with a CVSS score of 9.0 (HIGH). cgi-bin/read.cgi in WebSCADA WS100 and WS200, Easy Connect EC150, Modbus RTU - TCP Gateway MB100, and Serial Ethernet Server SS100 on the IntelliCom NetBiter NB100 and NB200 platforms allows remote au...

How severe is CVE-2010-4732?

CVE-2010-4732 has been rated HIGH with a CVSS base score of 9.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2010-4732?

Check the references section above for vendor advisories and patch information. Affected products include: Intellicom Netbiter Easyconnect Ec150, Intellicom Netbiter Modbus Rtu-Tcp Gateway Mb100, Intellicom Netbiter Serial Ethernet Server Ss100, Intellicom Netbiter Webscada Ws100, Intellicom Netbiter Webscada Ws200.