Unrated severityNVD Advisory· Published May 10, 2023· Updated Jan 24, 2025
Improper Limitation of a Pathname to a Restricted Directory
CVE-2023-31166
Description
An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the Schweitzer Engineering Laboratories Real-Time Automation Controller (SEL RTAC) Web Interface could allow a remote authenticated attacker to create folders in arbitrary paths of the file system.
See SEL Service Bulletin dated 2022-11-15 for more details.
Affected products
4- Range: R126-V0
- Range: R134-V0
- Range: R144-V2
- Range: R126-V0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.