Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in flow computer and remote controller products of ABB ( RMC-100 (Standard), RMC-100-LITE, XIO, XFCG5 , XRCG5 , uFLOG5 , UDC) allows an attacker who successfully exploited this vulnerability could insert and run arbitrary code in an affected system node.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: ABB
Published:
Updated: 2024-09-17T02:00:38.883Z
Reserved: 2022-03-09T00:00:00
Link: CVE-2022-0902
No data.
Status : Modified
Published: 2022-07-21T16:15:08.610
Modified: 2024-11-21T06:39:38.050
Link: CVE-2022-0902
No data.
OpenCVE Enrichment
No data.