Security Advisory

CVE-2022-2106

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-27 16:15:32
Last updated 2025-04-16 16:15:46
Assigner icscert
State PUBLISHED

Description

Elcomplus SmartICS v2.3.4.0 does not validate the filenames sufficiently, which enables authenticated administrator-level users to perform path traversal attacks and specify arbitrary files.