CVE-2017-6866

A vulnerability was discovered in Siemens XHQ server 4 and 5 (4 before V4.7.1.3 and 5 before V5.0.0.2) that could allow an authenticated low-privileged remote user to gain read access to data in the XHQ solution exceeding his configured permission level.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:siemens:xhq_server:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:xhq_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-08-07 23:29

Updated : 2023-12-10 12:15


NVD link : CVE-2017-6866

Mitre link : CVE-2017-6866

CVE.ORG link : CVE-2017-6866


JSON object : View

Products Affected

siemens

  • xhq_server
CWE
NVD-CWE-noinfo CWE-284

Improper Access Control