CVE-2022-4778

StreamX applications from versions 6.02.01 to 6.04.34 are affected by a path traversal vulnerability that allows authenticated users to get unauthorized access to files on the server's filesystem. StreamX applications using StreamView HTML component with the public web server feature activated are affected.
Configurations

Configuration 1 (hide)

cpe:2.3:a:elvexys:streamx:*:*:*:*:*:*:*:*

History

07 Nov 2023, 03:58

Type Values Removed Values Added
Summary StreamX applications from versions 6.02.01 to 6.04.34 are affected by a path traversal vulnerability that allows authenticated users to get unauthorized access to files on the server's filesystem. StreamX applications using StreamView HTML component with the public web server feature activated are affected. StreamX applications from versions 6.02.01 to 6.04.34 are affected by a path traversal vulnerability that allows authenticated users to get unauthorized access to files on the server's filesystem. StreamX applications using StreamView HTML component with the public web server feature activated are affected.

Information

Published : 2022-12-29 00:15

Updated : 2024-02-28 19:51


NVD link : CVE-2022-4778

Mitre link : CVE-2022-4778

CVE.ORG link : CVE-2022-4778


JSON object : View

Products Affected

elvexys

  • streamx
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')