PT-2022-25048 · Unknown · Factorycamera

Sergey Toshin

·

Published

2022-10-07

·

Updated

2022-10-07

·

CVE-2022-39858

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FactoryCamera versions prior to 3.5.51
Description A path traversal issue exists in the AtBroadcastReceiver component of FactoryCamera, allowing attackers to write arbitrary files with FactoryCamera privileges.
Recommendations For versions prior to 3.5.51, update to version 3.5.51 or later to resolve the issue.

Fix

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2022-39858

Affected Products

Factorycamera