PoC Index

CVE-2013-1627

HIGH 7.8EPSS 3.4%

Absolute path traversal vulnerability in NTWebServer.exe in Indusoft Studio 7.0 and earlier and Advantech Studio 7.0 and earlier allows remote attackers to read arbitrary files via a full pathname in an argument to the sub_401A90 CreateFileW function.

CVSS v2.0
7.8 HIGHAV:N/AC:L/Au:N/C:C/I:N/A:N
EPSS
3.39% chance of exploitation in the next 30 days, 88th percentile
Published
2013-03-11
Updated
2024-09-17

ExploitDB entries (1)

References

Related