Vulnerabilities > Aveva > Intouch Access Anywhere

DATE CVE VULNERABILITY TITLE RISK
2022-12-23 CVE-2022-23854 Path Traversal vulnerability in Aveva Intouch Access Anywhere 2020
AVEVA InTouch Access Anywhere versions 2020 R2 and older are vulnerable to a path traversal exploit that could allow an unauthenticated user with network access to read files on the system outside of the secure gateway web server.
network
low complexity
aveva CWE-22
7.5
2022-05-23 CVE-2022-1467 Exposure of Resource to Wrong Sphere vulnerability in Aveva products
Windows OS can be configured to overlay a “language bar” on top of any application.
network
low complexity
aveva CWE-668
critical
9.9