github.com
https://github.com/badboycxcc/SolarView_Compact_6.0_upload CVE-2022-31374
CRITICAL
contec sv-cpt-mc310_firmware Unrestricted Upload of File with Dangerous Type
Record summary
CVE-2022-31374 has a selected CVSS score of 9.8 (critical).
Description
An arbitrary file upload vulnerability /images/background/1.php in of SolarView Compact 6.0 allows attackers to execute arbitrary code via a crafted php file.
Description source: CVE List
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Jul 5, 2023 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
sv-cpt-mc310_firmwareBrowse contec / sv-cpt-mc310_firmware | VulnCheck | Version data not supplied | |
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-31374