Precisely Spectrum Spatial Analyst 20.01 is vulnerable to Directory Traversal.
References
Link | Resource |
---|---|
https://docs.precisely.com/docs/sftw/spectrum/release-notes/spectrum-2020-1-S56-release-notes.pdf | Patch Release Notes Vendor Advisory |
https://zxsecurity.co.nz/research/advisories/precisely-spectrum-spatial-analyst-20-1 | Exploit Third Party Advisory |
https://docs.precisely.com/docs/sftw/spectrum/release-notes/spectrum-2020-1-S56-release-notes.pdf | Patch Release Notes Vendor Advisory |
https://zxsecurity.co.nz/research/advisories/precisely-spectrum-spatial-analyst-20-1 | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 07:24
Type | Values Removed | Values Added |
---|---|---|
References | () https://docs.precisely.com/docs/sftw/spectrum/release-notes/spectrum-2020-1-S56-release-notes.pdf - Patch, Release Notes, Vendor Advisory | |
References | () https://zxsecurity.co.nz/research/advisories/precisely-spectrum-spatial-analyst-20-1 - Exploit, Third Party Advisory |
04 Aug 2023, 17:00
Type | Values Removed | Values Added |
---|---|---|
First Time |
Precisely spectrum Spatial Analyst
Precisely |
|
CWE | CWE-22 | |
CPE | cpe:2.3:a:precisely:spectrum_spatial_analyst:20.01:*:*:*:*:*:*:* | |
References | (MISC) https://docs.precisely.com/docs/sftw/spectrum/release-notes/spectrum-2020-1-S56-release-notes.pdf - Patch, Release Notes, Vendor Advisory | |
References | (MISC) https://zxsecurity.co.nz/research/advisories/precisely-spectrum-spatial-analyst-20-1 - Exploit, Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.3 |
31 Jul 2023, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-07-31 20:15
Updated : 2024-11-21 07:24
NVD link : CVE-2022-42182
Mitre link : CVE-2022-42182
CVE.ORG link : CVE-2022-42182
JSON object : View
Products Affected
precisely
- spectrum_spatial_analyst
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')