A CWE-20: Improper Input Validation vulnerability exists that could allow arbitrary files on the server to be read by authenticated users through a limited operating system service account. Affected Product: EcoStruxure Power Monitoring Expert (Versions 2020 and prior)
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: schneider
Published: 2022-02-04T22:29:38
Updated: 2024-08-03T03:21:49.053Z
Reserved: 2022-01-06T00:00:00
Link: CVE-2022-22726
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-02-04T23:15:13.257
Modified: 2024-11-21T06:47:19.903
Link: CVE-2022-22726
Redhat
No data.