CVE-2022-2106 Information

Description

Elcomplus SmartICS v2.3.4.0 does not validate the filenames sufficiently which enables authenticated administrator-level users to perform path traversal attacks and specify arbitrary files.

Reference

https://www.cisa.gov/uscert/ics/advisories/icsa-22-174-05

Share on: