Unrated severityNVD Advisory· Published Aug 17, 2022· Updated Apr 16, 2025
Softing Secure Integration Server Relative Path Traversal
CVE-2022-1373
Description
The “restore configuration” feature of Softing Secure Integration Server V1.22 is vulnerable to a directory traversal vulnerability when processing zip files. An attacker can craft a zip file to load an arbitrary dll and execute code. Using the "restore configuration" feature to upload a zip file containing a path traversal file may cause a file to be created and executed upon touching the disk.
Affected products
1- Range: V1.22
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- industrial.softing.com/fileadmin/psirt/downloads/syt-2022-5.htmlmitrex_refsource_CONFIRM
- www.cisa.gov/uscert/ics/advisories/icsa-22-228-04mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.