CVE-2022-29834

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ICONICS GENESIS64 versions 10.97 to 10.97.1 allows a remote unauthenticated attacker to access to arbitrary files in the GENESIS64 server and disclose information stored in the files by embedding a malicious URL parameter in the URL of the monitoring screen delivered to the GENESIS64 mobile monitoring application and accessing the monitoring screen.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:iconics:genesis64:10.97:*:*:*:*:*:*:*
cpe:2.3:a:iconics:genesis64:10.97.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-07-20 17:15

Updated : 2024-02-28 19:29


NVD link : CVE-2022-29834

Mitre link : CVE-2022-29834

CVE.ORG link : CVE-2022-29834


JSON object : View

Products Affected

iconics

  • genesis64
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')