First published: Sun Jun 11 2023(Updated: )
The Danfoss AK-EM100 web applications allow for Local File Inclusion in the file parameter.
Credit: csirt@divd.nl csirt@divd.nl
Affected Software | Affected Version | How to fix |
---|---|---|
Danfoss AK-EM100 Firmware | <2.2.0.12 | |
Danfoss AK-EM100 Firmware | ||
All of | ||
Danfoss AK-EM100 Firmware | <2.2.0.12 | |
Danfoss AK-EM100 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-22586 is a vulnerability that allows for Local File Inclusion in the file parameter of the Danfoss AK-EM100 web applications.
The severity of CVE-2023-22586 is high, with a severity value of 7.5.
The Danfoss AK-EM100 firmware versions up to and excluding 2.2.0.12 are affected by CVE-2023-22586.
To fix CVE-2023-22586, update your Danfoss AK-EM100 firmware to version 2.2.0.12 or higher.
You can find more information about CVE-2023-22586 at the following references: [https://csirt.divd.nl/DIVD-2023-00021](https://csirt.divd.nl/DIVD-2023-00021) and [https://divd.nl/cves/CVE-2023-22586](https://divd.nl/cves/CVE-2023-22586).