ChangingTec ServiSign - Path Traversal
CVE-2022-46306
8.8HIGH
What is CVE-2022-46306?
The ChangingTec ServiSign component is vulnerable to path traversal due to inadequate filtering of special characters in the DLL file path. This vulnerability allows an unauthenticated remote attacker to set up a malicious website that, when accessed by a user of the component, triggers the loading of malicious DLL files from an arbitrary file path. Consequently, this may enable attackers to execute arbitrary system operations and potentially disrupt services.
Affected Version(s)
ServiSign 0