CVE-2022-3387

6.5MEDIUM

Key Information

Vendor
Advantech
Status
R-seenet
Vendor
CVE Published:
27 October 2022

Summary

Advantech R-SeeNet Versions 2.4.19 and prior are vulnerable to path traversal attacks. An unauthorized attacker could remotely exploit vulnerable PHP code to delete .PDF files.

Affected Version(s)

R-SeeNet <= 2.4.19

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Risk change from: 5.3 to: 6.5 - (MEDIUM)

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database

Credit

rgod
Trend Micro Zero Day Initiative
.