Vulnerability Description
The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs, design files (i.e., a history of print files), and more are exposed to unauthenticated attackers through this HTTP server.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Makerbot | Replicator 5Th Generation Firmware | - |
| Makerbot | Replicator 5Th Generation | - |
Related Weaknesses (CWE)
References
- https://secur3.us/index.php/vulnerabilities/Broken Link
- https://support.makerbot.com/learn/makerbot-desktop-software/release-notes/makerRelease NotesVendor Advisory
- https://secur3.us/index.php/vulnerabilities/Broken Link
- https://support.makerbot.com/learn/makerbot-desktop-software/release-notes/makerRelease NotesVendor Advisory
FAQ
What is CVE-2014-9699?
CVE-2014-9699 is a vulnerability with a CVSS score of 7.5 (HIGH). The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs, design files (i.e., a history of print files), and more are exposed to unauthen...
How severe is CVE-2014-9699?
CVE-2014-9699 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-9699?
Check the references section above for vendor advisories and patch information. Affected products include: Makerbot Replicator 5Th Generation Firmware, Makerbot Replicator 5Th Generation.