Severity
High
Analysis Summary
CVE-2022-41657
Delta Electronics InfraSuite Device Master could allow a remote attacker to traverse directories on the system. An attacker could send a specially-crafted URL request to create arbitrary files and execute arbitrary code on the system.
Impact
- Gain Access
Indicators Of Compromise
CVE
- CVE-2022-41657
Affected Vendors
Delta Electronics
Affected Products
- Delta Electronics InfraSuite Device Master 00.00.01a
Remediation
Upgrade to the latest version of InfraSuite Device Master, available from the Delta Electronics Web site.