go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

POWERCOM CO., LTD. UPSMON PRO - Path Traversal

TVN ID TVN-202208005
CVE ID CVE-2022-38120
CVSS 6.5 (Medium)
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected Products POWERCOM CO., LTD. UPSMON PRO version 2.57
Description UPSMON PRO’s has a path traversal vulnerability. A remote attacker with general user privilege can exploit this vulnerability to bypass authentication and access arbitrary system files.
Solution Contact tech support from POWERCOM CO., LTD.
Credit Michael Heinzl
Public Date 2022-11-10
Top