An External Control of File Name or Path vulnerability in the APROL Web Portal used in B&R APROL <4.4-005P may allow an authenticated network-based attacker to access data from the file system.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 31 Mar 2025 18:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Tue, 25 Mar 2025 05:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | An External Control of File Name or Path vulnerability in the APROL Web Portal used in B&R APROL <4.4-005P may allow an authenticated network-based attacker to access data from the file system. | |
| Title | Path traversal in APROL Web Portal | |
| Weaknesses | CWE-73 | |
| References |  | |
| Metrics | cvssV4_0 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: ABB
Published: 2025-03-25T05:32:38.666Z
Updated: 2025-03-31T18:00:27.265Z
Reserved: 2024-10-21T10:04:31.354Z
Link: CVE-2024-10210
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-03-31T18:00:23.780Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2025-03-25T06:15:37.453
Modified: 2025-03-27T16:45:46.410
Link: CVE-2024-10210
 Redhat
                        Redhat
                    No data.