Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-939r-7q8p-37qg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Opto 22 SoftPAC Project Version 9.6 and prior. Paths specified within the zip files used to update the SoftPAC firmware are not sanitized. As a result, an attacker with user privileges can gain arbitrary file write access with system access.

Opto 22 SoftPAC Project Version 9.6 and prior. Paths specified within the zip files used to update the SoftPAC firmware are not sanitized. As a result, an attacker with user privileges can gain arbitrary file write access with system access.

EPSS

Процентиль: 22%
0.00073
Низкий

Связанные уязвимости

CVSS3: 6.5
nvd
больше 5 лет назад

Opto 22 SoftPAC Project Version 9.6 and prior. Paths specified within the zip files used to update the SoftPAC firmware are not sanitized. As a result, an attacker with user privileges can gain arbitrary file write access with system access.

EPSS

Процентиль: 22%
0.00073
Низкий