Low severity3.8NVD Advisory· Published Jun 27, 2022· Updated Jun 17, 2026
CVE-2022-2106
CVE-2022-2106
Description
Elcomplus SmartICS v2.3.4.0 does not validate the filenames sufficiently, which enables authenticated administrator-level users to perform path traversal attacks and specify arbitrary files.
Affected products
2Patches
Vulnerability mechanics
References
1- www.cisa.gov/uscert/ics/advisories/icsa-22-174-05nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.