← Back to home
ICSA-12-262-01  ·  Published 2025-06-05  ·  View on CISA ICS-CERT ↗

Fultek WinTr Directory Traversal

CVSS 7.8 HIGH

CVEs (1)

Remediations

  • The vendor has not offered any mitigation plans.
  • According to MITRE, the best mitigation for this type of vulnerability is to properly sanitize user input. MITRE also recommends, when the application is controlled by a third party and the code cannot be fixed, an application firewall may be used to validate input and mitigate the vulnerability. Running the application in a sandbox environment may also limit the scope of a compromise.

Affected Vendors

Fultek

Affected Products (1)

Fultek · WinTr Scada <=4.0.5

Get alerted to advisories like this

OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.

Start free trial Learn more