Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-35239


The image file management page of SolarView Compact SV-CPT-MC310 Ver.7.23 and earlier, and SV-CPT-MC310F Ver.7.23 and earlier contains an insufficient verification vulnerability when uploading files. If this vulnerability is exploited, arbitrary PHP code may be executed if a remote authenticated attacker uploads a specially crafted PHP file.


Published

2022-08-16T08:15:08.933

Last Modified

2024-11-21T07:10:57.080

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System contec sv-cpt-mc310f_firmware < 7.24 Yes
Hardware contec sv-cpt-mc310f - No
Operating System contec sv-cpt-mc310_firmware < 7.24 Yes
Hardware contec sv-cpt-mc310 - No

References