Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ICONICS GENESIS64 versions 10.97 to 10.97.1 allows a remote unauthenticated attacker to access to arbitrary files in the GENESIS64 server and disclose information stored in the files by embedding a malicious URL parameter in the URL of the monitoring screen delivered to the GENESIS64 mobile monitoring application and accessing the monitoring screen.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Mitsubishi

Published: 2022-07-20T16:48:46

Updated: 2024-08-03T06:33:42.679Z

Reserved: 2022-04-27T00:00:00

Link: CVE-2022-29834

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-07-20T17:15:08.043

Modified: 2024-11-21T06:59:46.827

Link: CVE-2022-29834

cve-icon Redhat

No data.