High severity7.5NVD Advisory· Published May 26, 2021· Updated Jun 17, 2026
CVE-2021-22736
CVE-2021-22736
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists in homeLYnk (Wiser For KNX) and spaceLYnk V2.60 and prior which could cause a denial of service when an unauthorized file is uploaded.
Affected products
6- homeLYnk/homeLYnkdescription
- Range: <=V2.60
- cpe:2.3:o:schneider-electric:spacelynk_firmware:*:*:*:*:*:*:*:*Range: <=2.6.0
- cpe:2.3:o:schneider-electric:homelynk_firmware:*:*:*:*:*:*:*:*Range: <=2.6.0
Patches
Vulnerability mechanics
References
1- download.schneider-electric.com/filesnvdVendor Advisory
News mentions
0No linked articles in our index yet.