High severity7.2NVD Advisory· Published Aug 17, 2022· Updated Jun 17, 2026
CVE-2022-1373
CVE-2022-1373
Description
The “restore configuration” feature of Softing Secure Integration Server V1.22 is vulnerable to a directory traversal vulnerability when processing zip files. An attacker can craft a zip file to load an arbitrary dll and execute code. Using the "restore configuration" feature to upload a zip file containing a path traversal file may cause a file to be created and executed upon touching the disk.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8= 1.22+ 2 more
- (no CPE)range: = 1.22
- cpe:2.3:a:softing:secure_integration_server:1.22:*:*:*:*:*:*:*
- (no CPE)range: V1.22
- cpe:2.3:a:softing:edgeaggregator:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:softing:edgeconnector:3.1:*:*:*:*:*:*:*
- cpe:2.3:a:softing:opc_ua_c\+\+_software_development_kit:6:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- industrial.softing.com/fileadmin/psirt/downloads/syt-2022-5.htmlnvdMitigationVendor Advisory
- www.cisa.gov/uscert/ics/advisories/icsa-22-228-04nvdMitigationThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.