Directory Listing Vulnerability in SPPA-T3000 Application Server by Siemens
CVE-2019-18332
5.3MEDIUM
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 12 December 2019
What is CVE-2019-18332?
A directory listing vulnerability exists in the SPPA-T3000 Application Server, allowing an attacker with network access to gain unauthorized access to directory listings. This issue can be exploited by sending specially crafted packets to specific TCP ports (80, 8080, and 8095). Potential attackers must have network access to the Application Server for exploitation. As of the publication, there have been no known instances of public exploitation.
Affected Version(s)
SPPA-T3000 Application Server All versions < Service Pack R8.2 SP2