ZeroHour

CVE-2022-2893

CVSS 3.1
6.5 medium
EPSS
<1%p51
Published
()
Modified
Description

RONDS EPM version 1.19.5 does not properly validate the filename parameter, which could allow an unauthorized user to specify file paths and download files.

Vendors
ronds
Products
equipment predictive maintenance
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.