PT-2022-16257 · Wisa · Smart Wing Cms

Published

2022-10-17

·

Updated

2022-10-19

·

CVE-2022-23770

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description This issue could allow a remote attacker to execute remote commands due to improper validation of parameters of certain API constructors. Remote attackers could use this to execute malicious commands, such as directory traversal.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

RCE

Weakness Enumeration

Related Identifiers

CVE-2022-23770

Affected Products

Smart Wing Cms