Vulnerabilities > CVE-2022-40977 - Unspecified vulnerability in Pilz products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
A path traversal vulnerability was discovered in Pilz PASvisu Server before 1.12.0. An unauthenticated remote attacker could use a zipped, malicious configuration file to trigger arbitrary file writes ('zip-slip'). File writes do not affect confidentiality or availability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 | |
OS | 9 | |
Hardware | 7 |