CVE-2022-2893

Publication date

2023-01-17 16:19:05

Family

icscert

State

PUBLISHED

Description

RONDS EPM version 1.19.5 does not properly validate the filename parameter, which could allow an unauthorized user to specify file paths and download files.