Contec CONPROSYS HMI System
cpe:2.3:a:contec:conprosys_hmi_system:*:*:*:*:*:*:*
- < 3.7.7
A vulnerability exists in Contec Co., Ltd. CONPROSYS HMI System (CHS) versions prior to 3.7.7, where an unauthenticated user can access a PHP phpinfo() debug page. This page may contain sensitive information that could be beneficial to an attacker.
Exploitation of this vulnerability allows a remote, unauthenticated attacker to access PHP runtime information, which could be used to facilitate further attacks.
Users are advised to update CONPROSYS HMI System (CHS) to version 3.7.7 or later, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.