VULNERABILITY INTELLIGENCE
CVE-2016-9339
CVSS score5.3 MEDIUM
EPSS probability1.71%
CISA KEVNot currently listed
Published2017-02-13
Last modified2026-06-17
CVSS vectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Description
An issue was discovered in INTERSCHALT Maritime Systems VDR G4e Versions 5.220 and prior. External input is used to construct paths to files and directories without properly neutralizing special elements within the pathname that could allow an attacker to read files on the system, a Path Traversal.
Weakness classification
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Primary references
- ics-cert@hq.dhs.gov — Third Party Advisory, VDB Entry
- ics-cert@hq.dhs.gov — Third Party Advisory, US Government Resource
- af854a3a-2127-422b-91ae-364da2661108 — Third Party Advisory, VDB Entry
- af854a3a-2127-422b-91ae-364da2661108 — Third Party Advisory, US Government Resource