HIGH · 7.8

CVE-2022-45792

Project files may contain malicious contents which the software will use to create files on the filesystem. This allows directory traversal and overwriting files with the privileges of the logged-in u...

Vulnerability Description

Project files may contain malicious contents which the software will use to create files on the filesystem. This allows directory traversal and overwriting files with the privileges of the logged-in user.

CVSS Score

7.8

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
OmronSysmac Studio< 1.54.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2022-45792?

CVE-2022-45792 is a vulnerability with a CVSS score of 7.8 (HIGH). Project files may contain malicious contents which the software will use to create files on the filesystem. This allows directory traversal and overwriting files with the privileges of the logged-in u...

How severe is CVE-2022-45792?

CVE-2022-45792 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2022-45792?

Check the references section above for vendor advisories and patch information. Affected products include: Omron Sysmac Studio.