Unauthenticated URL Retrieval Vulnerability in Schneider Electric's Pelco Sarix Professional

Unauthenticated URL Retrieval Vulnerability in Schneider Electric's Pelco Sarix Professional

CVE-2018-7227 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

A vulnerability exists in Schneider Electric's Pelco Sarix Professional in all firmware versions prior to 3.29.67 which could allow retrieving of specially crafted URLs without authentication that can reveal sensitive information to an attacker.

Learn more about our Web Application Penetration Testing UK.