9.8
CVSSv3

CVE-2022-38129

Published: 10/08/2022 Updated: 15/08/2022
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A path traversal vulnerability exists in the com.keysight.tentacle.licensing.LicenseManager.addLicenseFile() method in the Keysight Sensor Management Server (SMS). This allows an unauthenticated remote malicious user to upload arbitrary files to the SMS host.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

keysight sensor management server 2.4.0