A path traversal vulnerability in Tridium Niagara AX Versions 3.8 and prior and Niagara 4 systems Versions 4.4 and prior installed on Microsoft Windows Systems can be exploited by leveraging valid platform (administrator) credentials.
No PoCs from references.
- https://github.com/GainSec/CVE-2017-16744-and-CVE-2017-16748-Tridium-Niagara