Advisory Details

January 19th, 2019

OMRON CX-Supervisor sr3 File Parsing DeleteFile Arbitrary File Deletion Vulnerability

ZDI-19-105
ZDI-CAN-6646

CVE ID CVE-2018-19013
CVSS SCORE 6.1, AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
AFFECTED VENDORS Omron
AFFECTED PRODUCTS CX-Supervisor
VULNERABILITY DETAILS

This vulnerability allows remote attackers to delete arbitrary files on vulnerable installations of OMRON CX-Supervisor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.

The specific flaw exists within the parsing of project files. The issue results from the lack of proper validation of a user-supplied string, allowing for the deletion of any file on the system. An attacker could use this to delete data or create a denial-of-service condition.

ADDITIONAL DETAILS Omron has issued an update to correct this vulnerability. More details can be found at:
https://ics-cert.us-cert.gov/advisories/ICSA-19-017-01
DISCLOSURE TIMELINE
  • 2018-07-06 - Vulnerability reported to vendor
  • 2019-01-19 - Coordinated public release of advisory
CREDIT Esteban Ruiz (mr_me) of Source Incite
BACK TO ADVISORIES