← Vulnerability feed

Vulnerability record · CVE-2022-29298 · published 12 May 2022

CVE-2022-29298: SolarView Compact directory traversal exposes sensitive files

Contec · Sv Cpt Mc310 Firmware

SolarView Compact version 6.00 is vulnerable to directory traversal (CWE-22), letting an attacker read files outside the intended web root. Because the affected device is a solar power monitoring product, exposed files may include configuration and credential material. The flaw is remotely reachable and requires no authentication or user interaction.

7.5 CVSS 3.1 High EPSS 47% · top 1.2% CWE-22 · Path traversal
7.5CVSS 3.1 base score, v2 5.0
47%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References, 4 tagged exploit
17 Jun 2026Last modified by NVD

Description

SolarView Compact ver.6.00 allows attackers to access sensitive files via directory traversal.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 20 September 2026. Confidence: medium.

high priorityCVSS 7.5 with no authentication required, public exploit code available and very high EPSS, though no KEV listing or confirmed in-the-wild use is recorded.

What it is

SolarView Compact version 6.00 is vulnerable to directory traversal (CWE-22), letting an attacker read files outside the intended web root. Because the affected device is a solar power monitoring product, exposed files may include configuration and credential material. The flaw is remotely reachable and requires no authentication or user interaction.

Impact

An attacker gains read access to sensitive files on the device, which can reveal credentials, configuration or other data useful for further compromise. There is no evidence in the record of code execution or data modification.

Attack surface

Reachable over the network via the web interface, per the CVSS vector AV:N/AC:L/PR:N/UI:N, so no authentication or user interaction is needed. The description does not name the specific endpoint or parameter.

Exploitation

Public exploit code is referenced (PacketStorm and a Google Drive link tagged Exploit), and EPSS is 0.468 (98.8th percentile), indicating elevated likelihood. The CVE is not listed in CISA KEV, so no confirmed in-the-wild exploitation is documented in this record.

What to do

  • Apply the vendor patch or fixed firmware for SolarView Compact 6.00; if none is available, isolate the device.
  • Restrict network access to the device web interface to trusted management networks or VPN only.
  • Place the device behind a reverse proxy or WAF that normalizes and blocks path traversal sequences.
  • Rotate any credentials or secrets that may have been stored in files reachable through the traversal.
  • Monitor vendor advisories for updated firmware, since the record does not list a fixed version.

Detection

  • Inspect web server or proxy logs for requests containing ../, ..%2f, or encoded traversal sequences targeting the SolarView interface.
  • Alert on HTTP responses returning files outside expected web content paths or unusual file types.
  • Baseline normal request patterns to the device and flag anomalous file-path parameters.
  • Review device logs for repeated 200 responses to traversal-style requests from a single source.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2022-29298 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2022-29303SolarView Compact conf_mail.php OS command injectionSolarView Compact version 6.00 contains an OS command injection flaw reached through conf_mail.php. An unauthenticated remote attacker can inject and…KEVEPSS 98%analysed9.8CVE-2022-31374Contec sv-cpt-mc310 firmware unrestricted file upload vulnerabilityAn arbitrary file upload vulnerability /images/background/1.php in of SolarView Compact 6.0 allows attackers to execute arbitrary code via a crafted …EPSS 2.4%9.8CVE-2021-20658Contec sv-cpt-mc310 firmware os command injection vulnerabilitySolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an attacker to execute arbitrary OS commands with the web server privilege via unspecified vec…EPSS 3.7%8.8CVE-2023-27514Contec sv-cpt-mc310f firmware os command injection vulnerabilityOS command injection vulnerability in the download page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions prior…EPSS 1.9%8.8CVE-2023-27518Contec sv-cpt-mc310f firmware classic buffer overflow vulnerabilityBuffer overflow vulnerability in the multiple setting pages of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions p…EPSS 1.5%8.8CVE-2023-27521Contec sv-cpt-mc310f firmware os command injection vulnerabilityOS command injection vulnerability in the mail setting page of SolarView Compact SV-CPT-MC310 versions prior to Ver.8.10 and SV-CPT-MC310F versions p…EPSS 1.9%8.8CVE-2022-35239Contec sv-cpt-mc310f firmware improper input validation vulnerabilityThe image file management page of SolarView Compact SV-CPT-MC310 Ver.7.23 and earlier, and SV-CPT-MC310F Ver.7.23 and earlier contains an insufficien…EPSS 1.4%8.8CVE-2021-20659Contec sv-cpt-mc310 firmware unrestricted file upload vulnerabilitySolarView Compact SV-CPT-MC310 prior to Ver.6.5 allows an authenticated attacker to upload arbitrary files via unspecified vectors. If the file is PH…EPSS 2.1%

Source: NIST National Vulnerability Database (record CVE-2022-29298), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.