CVE Database
/

CVE-2020-12042

Back to search

CVE-2020-12042

Published: May 14, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

Opto 22 SoftPAC Project Version 9.6 and prior. Paths specified within the zip files used to update the SoftPAC firmware are not sanitized. As a result, an attacker with user privileges can gain arbitrary file write access with system access.

VendorProductVersions

n/a

Opto 22 SoftPAC Project

affected
SoftPAC Project Version 9.6 and prior

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now