Executive brief
Contec CONPROSYS M2M Gateway and Controller Series are industrial automation devices used in manufacturing and process control environments. A vulnerability allows unauthenticated remote attackers to access directory listings by reaching a specific URL, exposing sensitive file and folder structures that could aid further attacks on the system.
Technical details
This vulnerability is an exposure of information through directory listing (CWE-548) affecting CONPROSYS M2M Gateway and Controller Series devices. An unauthenticated remote attacker can access a specific URL on the affected products to retrieve directory listings without authentication, allowing enumeration of files and folders. The vulnerability requires network access but no authentication or user interaction. An attacker can exploit this to map the device's file structure and identify potential targets for further attacks. Patches are available in version 4.1.0 or later for affected M2M Gateway and Controller product lines.
Affected products
- Contec CONPROSYS M2M Gateway Integrated Type CPS-MG341 versions prior to 4.1.0
- Contec CONPROSYS M2M Gateway Configurable Type CPS-MGS341 versions prior to 4.1.0
- Contec CONPROSYS M2M Controller Integrated Type CPS-MC341 versions prior to 4.1.0
- Contec CONPROSYS M2M Controller Configurable Type CPS-MCS341 versions prior to 4.1.0
Timeline
- 2026-09-10: disclosed
- 2026-09-14: advisory