CVE-2017-9097
Estado: ModificadaCrítica (9.1)—
In Anti-Web through 3.8.7, as used on NetBiter FGW200 devices through 3.21.2, WS100 devices through 3.30.5, EC150 devices through 1.40.0, WS200 devices through 3.30.4, EC250 devices through 1.40.0, and other products, an LFI vulnerability allows a remote attacker to read or modify files through a path traversal technique, as demonstrated by reading the password file, or using the template parameter to cgi-bin/write.cgi to write to an arbitrary file.
CVSS
- Versión: 3.0
- Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
- Puntuación base: 9.1
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 3.73%
- Percentil entre todas las CVEs puntuadas: 90
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-22
Referencias
- http://misteralfa-hack.blogspot.cl/2017/05/apps-industrial-ot-over-server-anti-web.html
- https://github.com/ezelf/industrial_Tools/tree/master/scadas_server_antiweb/LFI
- https://www.netbiter.com/docs/default-source/netbiter-english/software/hms-security-advisory-2017-05-24-001-ws100-ws200-ec150-ec250.zip
- http://misteralfa-hack.blogspot.cl/2017/05/apps-industrial-ot-over-server-anti-web.html
- https://github.com/ezelf/industrial_Tools/tree/master/scadas_server_antiweb/LFI
- https://www.netbiter.com/docs/default-source/netbiter-english/software/hms-security-advisory-2017-05-24-001-ws100-ws200-ec150-ec250.zip
JSON original (NVD)
Mostrar
{
"id": "CVE-2017-9097",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 6.4,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:N",
"authentication": "NONE",
"integrityImpact": "PARTIAL",
"accessComplexity": "LOW",
"availabilityImpact": "NONE",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 4.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 10,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
],
"cvssMetricV30": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.0",
"baseScore": 9.1,
"attackVector": "NETWORK",
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.2,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2017-06-16T03:29:00.187",
"references": [
{
"url": "http://misteralfa-hack.blogspot.cl/2017/05/apps-industrial-ot-over-server-anti-web.html",
"tags": [
"Mailing List",
"Third Party Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://github.com/ezelf/industrial_Tools/tree/master/scadas_server_antiweb/LFI",
"tags": [
"Third Party Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "https://www.netbiter.com/docs/default-source/netbiter-english/software/hms-security-advisory-2017-05-24-001-ws100-ws200-ec150-ec250.zip",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://misteralfa-hack.blogspot.cl/2017/05/apps-industrial-ot-over-server-anti-web.html",
"tags": [
"Mailing List",
"Third Party Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://github.com/ezelf/industrial_Tools/tree/master/scadas_server_antiweb/LFI",
"tags": [
"Third Party Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://www.netbiter.com/docs/default-source/netbiter-english/software/hms-security-advisory-2017-05-24-001-ws100-ws200-ec150-ec250.zip",
"tags": [
"Patch",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-22"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "In Anti-Web through 3.8.7, as used on NetBiter FGW200 devices through 3.21.2, WS100 devices through 3.30.5, EC150 devices through 1.40.0, WS200 devices through 3.30.4, EC250 devices through 1.40.0, and other products, an LFI vulnerability allows a remote attacker to read or modify files through a path traversal technique, as demonstrated by reading the password file, or using the template parameter to cgi-bin/write.cgi to write to an arbitrary file."
},
{
"lang": "es",
"value": "En Anti-Web hasta la versión 3.8.7, tal y como se emplea en dispositivos NetBiter FGW200 hasta la versión 3.21.2, dispositivos WS100 hasta la versión 3.30.5, dispositivos EC150 hasta la versión 1.40.0, dispositivos WS200 hasta la versión3.30.4, dispositivos EC250 hasta la versión 1.40.0 y otros productos, una vulnerabilidad LFI permite que un atacante remoto lea o modifique archivos mediante una técnica de salto de directorio. Esto se demuestra por la lectura del archivo de contraseña o mediante el uso del parámetro template en cgi-bin/write.cgi para escribir en un archivo arbitrario."
}
],
"lastModified": "2026-06-17T01:27:28.257",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:hoytech:antiweb:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1E1A03EF-D59E-4045-9A1C-022BE576FA74",
"versionEndIncluding": "3.8.7"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.0.7:hms2:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E69C56A5-2A87-45C8-BC6A-7663AC417BA7"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.3.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AA87DB52-ACBF-447D-8890-FF6E2CA26676"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.6.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "66FBB2D5-903C-4744-B415-AA9E67DE4364"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.7.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "2D1F9411-BDB6-4A64-AA59-9B076DFCB4D5"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.7.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "013E037C-EFDD-47EA-88C3-2F65F5D1381B"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.8.1:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "62658ADB-AFF8-4E8A-91C4-8D8C2FC4C4E9"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.8.2:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A5E212BC-C04E-4421-B988-716312AECF2F"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.8.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DDEE5220-1468-4BD3-85B3-4E199060887D"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.8.4:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "E49BD5F4-8773-4B50-BB53-4834F34216D7"
},
{
"criteria": "cpe:2.3:a:hoytech:antiweb:3.8.5:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "BB108B76-FD67-442E-BA85-B8AD86EB9317"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}