siemens spectrum-power-4 CVE-2020-15790 is a vulnerability in Siemens Spectrum Power 4
Published on September 9, 2020

A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). If configured in an insecure manner, the web server might be susceptible to a directory listing attack.

NVD

Weakness Type

Exposure of Information Through Directory Listing

A directory listing is inappropriately exposed, yielding potentially sensitive information to attackers. A directory listing provides an attacker with the complete index of all the resources located inside of the directory. The specific risks and consequences vary depending on which files are listed and accessible.


Products Associated with CVE-2020-15790

Want to know whenever a new CVE is published for Siemens Spectrum Power 4? stack.watch will email you.

 

Affected Versions

Siemens AG Spectrum Power 4 Version All versions < V4.70 SP8 is affected by CVE-2020-15790

Exploit Probability

EPSS
0.24%
Percentile
46.49%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.