Elcomplus SmartPTT is vulnerable as the backup and restore system does not adequately validate upload requests, enabling a malicious user to potentially upload arbitrary files.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-30796 | Elcomplus SmartPTT is vulnerable as the backup and restore system does not adequately validate upload requests, enabling a malicious user to potentially upload arbitrary files. |
Fixes
Solution
Elcomplus has released an update to fix these vulnerabilities and recommends users upgrade to Version 2.3.4 or later. For more information, please contact Elcomplus support.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.cisa.gov/uscert/ics/advisories/icsa-22-109-04 |
|
History
No history.
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2025-04-16T16:27:44.690Z
Reserved: 2021-11-16T00:00:00.000Z
Link: CVE-2021-43934
No data.
Status : Modified
Published: 2022-04-28T15:15:09.493
Modified: 2024-11-21T06:30:01.853
Link: CVE-2021-43934
No data.
OpenCVE Enrichment
No data.
EUVD