CVE-2021-45421

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
14/02/2022
Last modified:
04/08/2024

Description

Emerson Dixell XWEB-500 products are affected by information disclosure via directory listing. A potential attacker can use this misconfiguration to access all the files in the remote directories. Note: the product has not been supported since 2018 and should be removed or replaced

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:emerson:dixell_xweb-500:-:*:*:*:*:*:*:*
cpe:2.3:o:emerson:dixell_xweb-500_firmware:-:*:*:*:*:*:*:*