go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

ChangingTec ServiSign - Path Traversal

TVN ID TVN-202211004
CVE ID CVE-2022-46305
CVSS 6.5 (Medium)
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Products Contact tech support from ChangingTec
Description ChangingTec ServiSign component has a path traversal vulnerability. An unauthenticated LAN attacker can exploit this vulnerability to bypass authentication and access arbitrary system files.
Solution Contact tech support from ChangingTec
Credit Lee Pu, Weber Tasi, KaiChing Wang (CHT Security)
Public Date 2022-12-14
Top