Vulnerability Description
The export function in SoftGuard Web (SGW) before 5.1.5 allows directory traversal to read an arbitrary local file via export or man.tcl.
CVSS Score
6.5
MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Monitoringsoft | Softguard Web | < 5.1.5 |
Related Weaknesses (CWE)
References
- https://sec-consult.com/vulnerability-lab/advisory/multiple-vulnerabilities-softExploitThird Party Advisory
- https://sec-consult.com/vulnerability-lab/advisory/multiple-vulnerabilities-softExploitThird Party Advisory
FAQ
What is CVE-2022-31202?
CVE-2022-31202 is a vulnerability with a CVSS score of 6.5 (MEDIUM). The export function in SoftGuard Web (SGW) before 5.1.5 allows directory traversal to read an arbitrary local file via export or man.tcl.
How severe is CVE-2022-31202?
CVE-2022-31202 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-31202?
Check the references section above for vendor advisories and patch information. Affected products include: Monitoringsoft Softguard Web.