Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-2969
HistoryDec 01, 2022 - 6:15 p.m.

Design/Logic Flaw

2022-12-0118:15:00
PRIOn knowledge base
www.prio-n.com
8
delta industrial automation
dialink
logic flaw
pathname
restricted directory

0.001 Low

EPSS

Percentile

46.5%

Delta Industrial Automation DIALink versions prior to v1.5.0.0 Beta 4 uses an external input to construct a pathname intended to identify a file or directory located underneath a restricted parent directory. However, the software does not properly neutralize special elements within the pathname, which can cause the pathname to resolve to a location outside of the restricted directory.

CPENameOperatorVersion
dialinkeq1.5.0.0 beta3
dialinklt1.5.0.0

0.001 Low

EPSS

Percentile

46.5%

Related for PRION:CVE-2022-2969