Vulnerability Description
OASES (aka Open Aviation Strategic Engineering System) 8.8.0.2 allows attackers to execute arbitrary code via the Open Print Folder menu.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Aspiresoftware | Open Aviation Strategic Engineering System | 8.8.0.2 |
References
- https://gist.github.com/Delson704557/df06fcee0b2676d611aef799e1c4a0e6Third Party Advisory
- https://oases.aero/Product
- https://www.aspiresoftware.com/companies/oases/ProductVendor Advisory
- https://gist.github.com/Delson704557/df06fcee0b2676d611aef799e1c4a0e6Third Party Advisory
- https://oases.aero/Product
- https://www.aspiresoftware.com/companies/oases/ProductVendor Advisory
FAQ
What is CVE-2022-40337?
CVE-2022-40337 is a vulnerability with a CVSS score of 8.8 (HIGH). OASES (aka Open Aviation Strategic Engineering System) 8.8.0.2 allows attackers to execute arbitrary code via the Open Print Folder menu.
How severe is CVE-2022-40337?
CVE-2022-40337 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-40337?
Check the references section above for vendor advisories and patch information. Affected products include: Aspiresoftware Open Aviation Strategic Engineering System.