CVE-2022-44354: Malicious File Upload
Published Nov 29, 2022
·Updated
SolarView Compact 4.0 and 5.0 is vulnerable to Unrestricted File Upload via a crafted php file.
Affected Software
6 affected components
Contec Solarview Compact Firmware=4.0
Contec Solarview Compact Firmware=5.0
Contec SolarView Compact
All of the following
Any of the following
Contec Solarview Compact Firmware=4.0
Contec Solarview Compact Firmware=5.0
Contec SolarView Compact
Event History
Nov 29, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-44354?
The severity of CVE-2022-44354 is critical with a score of 9.8.
2
What software versions are affected by CVE-2022-44354?
SolarView Compact 4.0 and 5.0 are affected by CVE-2022-44354.
3
How can an attacker exploit CVE-2022-44354?
An attacker can exploit CVE-2022-44354 by uploading a crafted PHP file to the SolarView Compact system.
4
Is SolarView Compact version 5.0.1 vulnerable to CVE-2022-44354?
No, SolarView Compact version 5.0.1 is not vulnerable to CVE-2022-44354.
5
Where can I find more information about CVE-2022-44354?
You can find more information about CVE-2022-44354 at the following reference: [link](https://github.com/strik3r0x1/Vulns/blob/main/Unrestricted%20File%20Upload_%20SolarView%20Compact%204.0%2C5.0.md)