A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in the SGIUtility component that allows adversaries with local user privileges to load malicious DLL which could result in execution of malicious code. Affected Products: EcoStruxure Operator Terminal Expert(V3.3 Hotfix 1 or prior), Pro-face BLUE(V3.3 Hotfix1 or prior).
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: schneider

Published: 2022-11-04T00:00:00

Updated: 2022-11-04T00:00:00

Reserved: 2022-09-27T00:00:00


Link: CVE-2022-41670

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-11-04T14:15:10.627

Modified: 2022-11-08T16:20:08.020


Link: CVE-2022-41670

JSON object: View

cve-icon Redhat Information

No data.

CWE