ZeroHour

CVE-2022-28814

CVSS 3.1
9.8 critical
EPSS
1%p65
Published
()
Modified
Description

Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 was discovered to be vulnerable to a relative path traversal vulnerability which enables remote attackers to read arbitrary files and gain full control of the device.

Vendors
gavazziautomation
Products
cpy car park server, uwp 3.0 monitoring gateway and controller firmware
Weakness
CWE-23, CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.