CVE-2018-18990: Lcds Laquis Scada
Medium severity, CVSS 5.3. EPSS: 39.5% chance of exploitation in the next 30 days.
LCDS Laquis SCADA prior to version 4.1.0.4150 allows a user-supplied path in file operations prior to proper validation. An attacker can leverage this vulnerability to disclose sensitive information under the context of the web server process.
Affected products
- Lcds Laquis Scada: before 4.1.0.4150 (fixed in 4.1.0.4150)
Published 2019-02-05. Last modified 2026-06-17.