Back

HIGH

Ecava IntegraXor SCADA Server External Control of File Name or Path

Published Sep 15, 2014

Description

Ecava IntegraXor SCADA Server Stable 4.1.4360 and earlier and Beta 4.1.4392 and earlier allows remote attackers to read or write to arbitrary files, and obtain sensitive information or cause a denial of service (disk consumption), via the CSV export feature.

Affected products

Remediation

Vendor solution

Ecava has produced a patch to address all four vulnerabilities identified. The patch can be downloaded from:

http://www.integraxor.com/download/rc.msi?4.2.4458

Metrics

Weaknesses (2)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner icscert
Published Sep 15, 2014
Updated Oct 13, 2025
Reserved Mar 13, 2014
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity n/a
Public date n/a