7.2
CVSSv3

CVE-2022-1373

Published: 17/08/2022 Updated: 27/06/2023
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

The “restore configuration” feature of Softing Secure Integration Server V1.22 is vulnerable to a directory traversal vulnerability when processing zip files. An attacker can craft a zip file to load an arbitrary dll and execute code. Using the "restore configuration" feature to upload a zip file containing a path traversal file may cause a file to be created and executed upon touching the disk.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

softing edgeaggregator 3.1

softing secure integration server 1.22

softing edgeconnector 3.1

softing opc 5.2

softing opc ua c\\+\\+ software development kit 6

softing uagates 1.74