Copeland XWEB Pro Arbitrary File-Read Vulnerability Allowing Denial-of-Service
Vulnerability
An arbitrary file-read vulnerability has been identified in Copeland XWEB Pro versions through 1.12.1. This vulnerability allows unauthenticated attackers to read arbitrary files on the system, potentially leading to a denial-of-service condition.
Impact
Exploitation of this vulnerability could result in unauthorized file access, potentially causing a denial-of-service condition.
Remediation
Users are advised to update XWEB Pro to the latest version. Instructions for updating are available on the Copeland XWEB Pro System Software Updates page. Alternatively, users can update directly from Copeland servers via the SYSTEM -- Updates | Network menu.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
