CVE-2020-7495

CVE-2020-7495

A CWE-22: Improper Limitation of a Pathname to a Restricted Directory (‘Path Traversal’) vulnerability during zip file extraction exists in EcoStruxure Operator Terminal Expert 3.1 Service Pack 1 and prior (formerly known as Vijeo XD) which could cause unauthorized write access outside of expected path folder when opening the project file.

Source: CVE-2020-7495

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다