QID 590902
Date Published: 2022-06-20
QID 590902: Elcomplus SmartPTT SCADA Multiple Vulnerabilities (ICSA-22-109-04)
AFFECTED PRODUCTS
The following version of SmartPTT SCADA, an integrated voice and data dispatch software, is affected:
SmartPTT SCADA v1.1
QID Detection Logic (Authenticated)
QID checks for the Vulnerable version using windows registry keys
Successful exploitation of these vulnerabilities could provide attackers a way to traverse the file system to access files or directories that are outside of the restricted directory; allow the upload or transfer files of dangerous types that can be automatically processed within the product's environment; allow an unauthorized access to an action or a resource; or allow a user to store dangerous data in a trusted database.
Customers are advised to refer to CERT MITIGATIONS section ICSA-22-109-04 for affected packages and patching details.
- ICSA-22-109-04 -
www.us-cert.gov/ics/advisories/ICSA-22-109-04
CVEs related to QID 590902
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-22-109-04 |
|