Podatność CVE-2022-23854


Publikacja: 2022-12-23

Opis:
AVEVA InTouch Access Anywhere versions 2020 R2 and older are vulnerable to a path traversal exploit that could allow an unauthenticated user with network access to read files on the system outside of the secure gateway web server.

W naszej bazie, znaleźliśmy następujące noty dla tego CVE:
Tytuł
Autor
Data
Med.
AVEVA InTouch Access Anywhere Secure Gateway 2020 R2 Path Traversal
Jens Regel
12.11.2022

Typ:

CWE-23

(Relative Path Traversal)

 Referencje:
https://www.cisa.gov/uscert/ics/advisories/icsa-22-342-02

Copyright 2024, cxsecurity.com

 

Back to Top