AVEVA InTouch Access Anywhere Secure Gateway是英国剑维软件(AVEVA)公司的一个 InTouch 扩展。为移动用户和临时用户提供通过 HTML5 兼容浏览器访问 InTouch 应用程序的功能。 AVEVA InTouch Access Anywhere Secure Gateway 2020 R2及以前的版本存在路径遍历漏洞,该漏洞源于路径遍历。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| AVEVA | InTouch Access Anywhere | 0 ~ 2020 R2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | AVEVA InTouch Access Anywhere Secure Gateway is vulnerable to local file inclusion. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2022/CVE-2022-23854.yaml | POC Details |
| 2 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E7%BD%91%E7%BB%9C%E8%AE%BE%E5%A4%87%E6%BC%8F%E6%B4%9E/AVEVA%20InTouch%E5%AE%89%E5%85%A8%E7%BD%91%E5%85%B3%20AccessAnywhere%20%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E8%AF%BB%E5%8F%96%E6%BC%8F%E6%B4%9E%20CVE-2022-23854.md | POC Details |
No public POC found.
Login to generate AI POCNo comments yet