First published: Tue Jan 31 2023(Updated: )
ChangingTech MegaServiSignAdapter component has a path traversal vulnerability within its file reading function. An unauthenticated remote attacker can exploit this vulnerability to access arbitrary system files.
Credit: twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Changingtec Megaservisignadapter | <1.0.22.1004 |
Update MegaServiSignAdapter (Windows) version to 1.0.22.1004
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for ChangingTech MegaServiSignAdapter component is CVE-2022-39059.
The severity of CVE-2022-39059 is high with a score of 7.5.
The affected software for CVE-2022-39059 is ChangingTech MegaServiSignAdapter version 1.0.22.1004 on Windows.
CVE-2022-39059 is a path traversal vulnerability within the file reading function of ChangingTech MegaServiSignAdapter component. An unauthenticated remote attacker can exploit this vulnerability to access arbitrary system files.
To fix CVE-2022-39059, it is recommended to update ChangingTech MegaServiSignAdapter component to a version that is not affected by this vulnerability.