SDM600 file permission validation
CVE-2022-3682
9.9CRITICAL
What is CVE-2022-3682?
A vulnerability in the Hitachi Energy SDM600 product exists due to inadequate file permission validation. Attackers can exploit this flaw by uploading specially crafted messages to the system, potentially leading to arbitrary code execution. This issue can affect all versions of SDM600 prior to the secured revision 1.2 FP3 HF4 (Build Nr. 1.2.23000.291). Users are advised to update to the latest version to mitigate risks associated with this vulnerability.
Affected Version(s)
SDM600 SDM600 1.2
SDM600 SDM600 1.1
SDM600 SDM600 1.0;