Medium severity6.5NVD Advisory· Published Jan 3, 2023· Updated Jun 17, 2026
CVE-2022-46309
CVE-2022-46309
Description
Vitals ESP upload function has a path traversal vulnerability. A remote attacker with general user privilege can exploit this vulnerability to access arbitrary system files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:vitalsesp:vitals_esp:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:vitalsesp:vitals_esp:*:*:*:*:*:*:*:*range: >=3.0.8,<=6.2.0
- (no CPE)
- Range: 3.0.8
Patches
Vulnerability mechanics
References
1- www.twcert.org.tw/tw/cp-132-6785-86407-1.htmlnvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.