A CWE-22: Improper Limitation of a Pathname to a Restricted Directory vulnerability exists that could cause disclosure of arbitrary files being read in the context of the user running IGSS, due to missing validation of user supplied data in network messages. Affected Product: Interactive Graphical SCADA System Data Collector (dc.exe) (V15.0.0.21243 and prior)
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: schneider
Published: 2022-02-11T17:40:37
Updated: 2024-08-03T18:51:07.504Z
Reserved: 2021-01-06T00:00:00
Link: CVE-2021-22804
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-02-11T18:15:09.400
Modified: 2024-11-21T05:50:42.197
Link: CVE-2021-22804
Redhat
No data.