Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-46306
HistoryJan 03, 2023 - 3:15 a.m.

Path traversal

2023-01-0303:15:00
PRIOn knowledge base
www.prio-n.com
1
path traversal
changingtec servisign
dll file
remote attacker
malicious website
arbitrary file path
arbitrary system operation
service disruption
nvd

7.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.4%

ChangingTec ServiSign component has a path traversal vulnerability due to insufficient filtering for special characters in the DLL file path. An unauthenticated remote attacker can host a malicious website for the component user to access, which triggers the component to load malicious DLL files under arbitrary file path and allows the attacker to perform arbitrary system operation and disrupt of service.

7.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.4%

Related for PRION:CVE-2022-46306