ICSA-12-262-01
·
Published 2025-06-05
·
View on CISA ICS-CERT ↗
Fultek WinTr Directory Traversal
CVSS 7.8
HIGH
CVEs (1)
Remediations
- The vendor has not offered any mitigation plans.
- According to MITRE, the best mitigation for this type of vulnerability is to properly sanitize user input. MITRE also recommends, when the application is controlled by a third party and the code cannot be fixed, an application firewall may be used to validate input and mitigate the vulnerability. Running the application in a sandbox environment may also limit the scope of a compromise.
Affected Vendors
Fultek
Affected Products (1)
Fultek
·
WinTr Scada
<=4.0.5
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more