CVE-2022-29509

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
14/06/2022
Last modified:
27/06/2022

Description

Directory traversal vulnerability in T&D Data Server (Japanese Edition) Ver.2.22 and earlier, T&D Data Server (English Edition) Ver.2.30 and earlier, THERMO RECORDER DATA SERVER (Japanese Edition) Ver.2.13 and earlier, and THERMO RECORDER DATA SERVER (English Edition) Ver.2.13 and earlier allows a remote attacker to view an arbitrary file on the server via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tandd:t\&d_server:*:*:*:*:ja:*:*:* 2.22 (including)
cpe:2.3:a:tandd:t\&d_server:*:*:*:*:en:*:*:* 2.30 (including)
cpe:2.3:o:tandd:thermo_recorder_data_server_firmware:*:*:*:en:*:*:*:* 2.13 (including)
cpe:2.3:h:tandd:thermo_recorder_data_server:-:*:*:en:*:*:*:*
cpe:2.3:o:tandd:thermo_recorder_data_server_firmware:*:*:*:ja:*:*:*:* 2.13 (including)
cpe:2.3:h:tandd:thermo_recorder_data_server:-:*:*:ja:*:*:*:*