Loading HuntDB...

GHSA-p2mf-2ffv-9fqx

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

A CWE-704: Incorrect Project Conversion vulnerability exists that allows adversaries with local user privileges to load a project file from an adversary-controlled network share which could result in execution of malicious code. Affected Products: EcoStruxure Operator Terminal Expert(V3.3 Hotfix 1 or prior), Pro-face BLUE(V3.3 Hotfix1 or prior).

Related CVEs

Key Information

GHSA ID
GHSA-p2mf-2ffv-9fqx
Published
November 4, 2022 7:01 PM
Last Modified
November 5, 2022 12:00 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 6, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.