Vulnerability Description
Project files may contain malicious contents which the software will use to create files on the filesystem. This allows directory traversal and overwriting files with the privileges of the logged-in user.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Omron | Sysmac Studio | < 1.54.0 |
Related Weaknesses (CWE)
References
- https://www.dragos.com/advisory/omron-plc-and-engineering-software-network-and-fThird Party Advisory
- https://www.dragos.com/advisory/omron-plc-and-engineering-software-network-and-fThird Party Advisory
FAQ
What is CVE-2022-45792?
CVE-2022-45792 is a vulnerability with a CVSS score of 7.8 (HIGH). Project files may contain malicious contents which the software will use to create files on the filesystem. This allows directory traversal and overwriting files with the privileges of the logged-in u...
How severe is CVE-2022-45792?
CVE-2022-45792 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-45792?
Check the references section above for vendor advisories and patch information. Affected products include: Omron Sysmac Studio.