Opto 22 SoftPAC Project Version 9.6 and prior. Paths specified within the zip files used to update the SoftPAC firmware are not sanitized. As a result, an attacker with user privileges can gain arbitrary file write access with system access.
[
{
"product": "Opto 22 SoftPAC Project",
"vendor": "n/a",
"versions": [
{
"status": "affected",
"version": "SoftPAC Project Version 9.6 and prior"
}
]
}
]