CVE-2023-22855 | Kardex Mlog MCC 5.7.12+0-a203c2a213-master Web Interface Path.Combine path traversal (Advisory 171046 / EDB-51239)
A vulnerability classified as critical has been found in Kardex Mlog MCC 5.7.12+0-a203c2a213-master. Affected is the function Path.Combine of the component Web Interface Handler. The manipulation leads to path traversal.
This vulnerability is traded as CVE-2023-22855. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.