An issue was discovered in LTOS-Web-Interface in Meinberg LANTIME-Firmware before 6.24.029 MBGID-9343 and 7 before 7.04.008 MBGID-6303. Path validation is mishandled, and thus an admin can read or delete files in violation of expected access controls.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 17 Jun 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-22 | |
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-06-17T17:20:25.837Z
Reserved: 2024-02-04T00:00:00.000Z
Link: CVE-2021-46902
Updated: 2024-08-04T05:17:42.980Z
Status : Modified
Published: 2024-02-04T21:15:07.840
Modified: 2025-06-17T18:15:22.437
Link: CVE-2021-46902
No data.
OpenCVE Enrichment
No data.
Weaknesses