Vulnerability Description
The remote admin webserver on FANUC Robotics Virtual Robot Controller 8.23 allows Directory Traversal via a forged HTTP request.
CVSS Score
5.3
MEDIUM
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Fanucamerica | Robotics Virtual Robot Controller | 8.23 |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/153672/FANUC-Robotics-Virtual-Robot-ControlExploitThird Party AdvisoryVDB Entry
- https://seclists.org/bugtraq/2019/Jul/23ExploitMailing ListThird Party Advisory
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2019-025.t
- http://packetstormsecurity.com/files/153672/FANUC-Robotics-Virtual-Robot-ControlExploitThird Party AdvisoryVDB Entry
- https://seclists.org/bugtraq/2019/Jul/23ExploitMailing ListThird Party Advisory
- https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2019-025.t
FAQ
What is CVE-2019-13584?
CVE-2019-13584 is a vulnerability with a CVSS score of 5.3 (MEDIUM). The remote admin webserver on FANUC Robotics Virtual Robot Controller 8.23 allows Directory Traversal via a forged HTTP request.
How severe is CVE-2019-13584?
CVE-2019-13584 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-13584?
Check the references section above for vendor advisories and patch information. Affected products include: Fanucamerica Robotics Virtual Robot Controller.