Home / vulnerabilitiesPDF  

ICS-CERT Advisory - Tridium Niagara Issues

Posted on 17 August 2012
Source : packetstormsecurity.org Link

 

ICS-CERT Advisory ICSA-12-228-01 - Independent security researchers Billy Rios and Terry McCorkle have identified multiple vulnerabilities in the Tridium Niagara AX Framework software. The vulnerabilities include directory traversal, weak credential storage, session cookie weaknesses, and predictable session IDs, all of which can be exploited remotely. All known versions of the Tridium Niagara AX Framework software products are susceptible to these vulnerabilities.

 

TOP