CVE-2022-2139: Advantech iView
Published Jul 22, 2022
·Updated
The affected product is vulnerable to directory traversal, which may allow an attacker to access unauthorized files and execute arbitrary code.
Affected Software
2 affected componentsFixes available
Advantech iView_7_04_6469<5
5
Advantech iView<5.7.04.6469
Remediation
Information
Advantech recommends updating firmware to Version 5_7_4_6469 to address these vulnerabilities.
Event History
Jul 22, 2022
CVE Published
via MITRE·02:58 PM
Data Sourced
via MITRE·02:58 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-2139?
CVE-2022-2139 is a vulnerability that allows attackers to access unauthorized files and execute arbitrary code through directory traversal.
2
Which product is affected by CVE-2022-2139?
The affected product is Advantech iView version 5.7.04.6469.
3
How severe is CVE-2022-2139?
CVE-2022-2139 has a severity rating of 9.8 (critical).
4
How can an attacker exploit CVE-2022-2139?
An attacker can exploit CVE-2022-2139 by leveraging directory traversal to access unauthorized files and execute arbitrary code.
5
Is there a fix available for CVE-2022-2139?
At the moment, there is no fix available for CVE-2022-2139. It is recommended to follow the recommendations provided by the vendor or product manufacturer.