CVE-2026-82765

8.1

Contec · FXA5000, FXA5020, FXE5000, FXS5000

A path traversal vulnerability in Contec FX series industrial gateways allows authenticated attackers to read or modify arbitrary files on the server via the FTP interface.

Executive summary

A high-severity path traversal vulnerability in Contec industrial gateways allows authenticated attackers to access or alter sensitive files on the system.

Vulnerability

This is a relative path traversal vulnerability (CWE-23) affecting the FTP service of the device. The vulnerability requires the attacker to have low-level authenticated access to the FTP interface to read or modify arbitrary files on the underlying filesystem.

Business impact

The ability to read or modify arbitrary files poses a significant risk to operational technology environments. An attacker could extract configuration credentials, modify system files to facilitate further persistence, or disrupt critical industrial gateway functions, leading to unauthorized access and potential system downtime. The CVSS score of 8.1 reflects the high impact on confidentiality and integrity, necessitating prompt remediation.

Remediation

Immediate Action: Update the affected Contec hardware to firmware version 1.12.00 or later as specified in the vendor security advisory.

Proactive Monitoring: Monitor FTP access logs for unusual file path patterns, such as multiple dot-dot-slash sequences, or unauthorized attempts to access system directories.

Compensating Controls: Restrict network access to the FTP service to known, trusted management IP addresses using firewall rules, or disable the FTP service entirely if it is not required for operational tasks.

Exploitation status

Public Exploit Available: No

Analyst recommendation

Given the potential for unauthorized file access and modification in an industrial setting, this vulnerability should be prioritized for patching. Administrators must verify their hardware version and apply the 1.12.00 firmware update immediately to mitigate the risk of unauthorized system manipulation.

More Contec CVEs all →

History

  1. Disclosed CVE record published
  2. Collected by CVE Brief via github
  3. Analyst report written
  4. Published in the daily brief high section

Sources