7.5
CVSSv3

CVE-2022-2102

Published: 24/06/2022 Updated: 06/07/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Controls limiting uploads to certain file extensions may be bypassed. This could allow an malicious user to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing for arbitrary file upload into a location where PHP scripts may be executed.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

secheron sepcos_control_and_protection_relay_firmware