Carel pCOWeb HVAC BACnet Gateway 2.1.0, Firmware: A2.1.0 - B2.1.0, Application Software: 2.15.4A Software v16 13020200 suffers from an unauthenticated arbitrary file disclosure vulnerability. Input passed through the 'file' GET parameter through the 'logdownload.cgi' Bash script is not properly verified before being used to download log files. This can be exploited to disclose the contents of arbitrary and sensitive files via directory traversal attacks.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NCarel Applica
APPCarel16_130202002.154aCarel Pcoweb Card
HWCarelall versionsCarel Pcoweb Card Firmware
OSCarela2.1.0 – b.2.1.0Carel Pcoweb Hvac Bacnet Gateway
APPCarel2.1.0
Related vulnerabilities
An issue was discovered in Carel pCOWeb prior to B1.2.4. In /config/pw_changeusers.html the device stores clea...
The Glen Dimplex Deutschland GmbH implementation of the Carel pCOWeb configuration tool allows remote attacker...
Stored XSS was discovered in Carel pCOWeb prior to B1.2.4, as demonstrated by the config/pw_snmp.html "System ...
Nieprawidłowa kontrola dostępu w Carel Boss Mini 1.5.0
Hardcoded credentials w Rittal Chiller SK 3232 / Carel pCOWeb