CVE-2023-3256
22.06.2023, 17:15
Advantech R-SeeNet versions 2.4.22 allows low-level users to access and load the content of local files.Enginsight
Vendor | Product | Version |
---|---|---|
advantech | r-seenet | 𝑥 ≤ 2.4.22 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-73 - External Control of File Name or PathThe software allows user input to control or influence paths or file names that are used in filesystem operations.
- CWE-610 - Externally Controlled Reference to a Resource in Another SphereThe product uses an externally controlled name or reference that resolves to a resource that is outside of the intended control sphere.