go to Content
:::

TWCERT/CC Taiwan Computer Emergency Response Team/Coordination Center

:::
Date:
Font-stze:

ChangingTec MegaServiSignAdapter - Path Traversal

TVN ID TVN-202212008
CVE ID CVE-2022-39059
CVSS 7.5 (High)
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Products ChangingTec MegaServiSignAdapter (Windows) v1.0.17.0823
Description ChangingTech MegaServiSignAdapter component has a path traversal vulnerability within its file reading function. An unauthenticated remote attacker can exploit this vulnerability to access arbitrary system files.
Solution Update MegaServiSignAdapter (Windows) version to 1.0.22.1004
Credit DEVCORE Research Team (DEVCORE)
Public Date 2023-01-31
Top