Security Advisory

CVE-2022-40264

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-12-13 23:32:57
Last updated 2025-04-18 14:46:00
Assigner Mitsubishi
CVSS score 6.3
State PUBLISHED

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ICONICS/Mitsubishi Electric GENESIS64 versions 10.96 to 10.97.2 allows an unauthenticated attacker to create, tamper with or destroy arbitrary files by getting a legitimate user import a project package file crafted by the attacker.