S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jan 10, 2024

CVE-2017-11165 Scanner

Detects 'Information Disclosure' vulnerability in dataTaker DT80 affects v. dEX 1.50.012.

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
3.3k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2017-11165
9.8
CVSS

dataTaker DT80 dEX 1.50.012 allows remote attackers to obtain sensitive credential and configuration information via a direct request for the /services/getFile.cmd?userfile=config.xml URI.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

The dataTaker DT80 is a popular data logger used by professionals in several industries, including agriculture, environmental monitoring, and research. It can measure and record various data, such as temperature, pressure, and humidity, and transmit it to a remote server for analysis and reporting. Its versatile nature has made it a popular choice for those who require accurate and reliable data.

However, the dataTaker DT80 dEX 1.50.012 has a vulnerability, CVE-2017-11165, that can be exploited by remote attackers. The vulnerability allows attackers to access sensitive credentials and configuration information by directly requesting the /services/getFile.cmd?userfile=config.xml URI. This URI is utilized by system administrators to extract data logs from the dataTaker DT80.

Exploiting this vulnerability can lead to serious consequences. Attackers can use this information to gain unauthorized access to the system, steal sensitive information, or manipulate the data. The consequences could be devastating, particularly for organizations that rely on the data collected by the dataTaker DT80 to make decisions.

With the pro features of the s4e.io platform, you can keep your digital assets secure by learning about vulnerabilities and staying informed about the latest security trends. By using the platform, you can quickly identify and mitigate any vulnerabilities that might exist in your systems, ensuring that your data remains safe and secure. Don't put your organization at risk, take action now and secure your systems with s4e.io.

 

REFERENCES

Solution Advice

Protecting against this vulnerability requires taking precautionary measures. Here are a few:

  • Update to the latest version of the software that fixes the vulnerability.
  • Disable and remove any unused services or applications that might be running on the dataTaker DT80.
  • Implement strong authentication mechanisms, such as two-factor authentication, to protect sensitive data.
  • Configure firewalls to restrict access to the dataTaker DT80 from unknown or untrusted sources.
  • Regularly monitor system activity to identify any suspicious behavior or attempts to exploit the vulnerability.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2017-11165 scanner - Information Disclosure vulnerability in dataTaker DT80 | S4E