PatchSiren

RAD Data Communications CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH RAD Data Communications CVE published 2024-06-18

CVE-2019-6268

CVE-2019-6268 is a directory traversal vulnerability affecting RAD Data Communications SecFlow-2 industrial devices. The vulnerability allows unauthenticated remote attackers to access arbitrary files on the device by crafting HTTP requests with URIs beginning with /... This path traversal technique bypasses intended access controls and enables reading of sensitive system files, as demonstrated by success [truncated]