In s::can moni::tools in versions below 4.2 an unauthenticated attacker could get any file from the device by path traversal in the camera-file module.
References
Link Resource
https://www.s-can.at/en/the-new-monitool-v4-2-security-first/ Release Notes Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: CERTVDE

Published: 2022-11-07T09:42:27.370Z

Updated: 2022-11-07T12:19:08.750Z

Reserved: 2020-04-30T00:00:00.000Z


Link: CVE-2020-12509

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-11-07T10:15:10.333

Modified: 2022-11-08T04:24:32.460


Link: CVE-2020-12509

JSON object: View

cve-icon Redhat Information

No data.

CWE