CVE-2022-37060: Path Traversal
FLIR AX8 thermal sensor cameras version up to and including 1.46.16 is vulnerable to Directory Traversal due to an improper access restriction. An unauthenticated, remote attacker can exploit this by sending a URI that contains directory traversal characters to disclose the contents of files located outside of the server's restricted path.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-37060?
CVE-2022-37060 is classified as a high severity vulnerability due to its potential exploitation by unauthenticated remote attackers.
How do I fix CVE-2022-37060?
To fix CVE-2022-37060, update the FLIR AX8 firmware to a version newer than 1.46.16 that addresses the directory traversal vulnerability.
What systems are affected by CVE-2022-37060?
CVE-2022-37060 affects FLIR AX8 thermal sensor cameras running firmware versions up to and including 1.46.16.
What is the impact of exploiting CVE-2022-37060?
Exploiting CVE-2022-37060 allows an attacker to disclose the contents of sensitive files on the affected device.
Is authentication required to exploit CVE-2022-37060?
No, CVE-2022-37060 can be exploited by an unauthenticated remote attacker.