CVE-2022-0074: Privilege Escalation in OpenLiteSpeed Web Server
Published Oct 27, 2022
·Updated
Untrusted Search Path vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server and LiteSpeed Web Server Container allows Privilege Escalation. This affects versions from 1.6.15 before 1.7.16.1.
Affected Software
1 affected component
Litespeedtech Openlitespeed>=1.6.15<1.7.16.1
Event History
Oct 27, 2022
CVE Published
via MITRE·07:32 PM
Data Sourced
via MITRE·07:32 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-0074?
CVE-2022-0074 is classified as a privilege escalation vulnerability.
2
How do I fix CVE-2022-0074?
To fix CVE-2022-0074, upgrade from OpenLiteSpeed versions 1.6.15 through 1.7.16.1 to the latest version.
3
Which versions are affected by CVE-2022-0074?
CVE-2022-0074 affects OpenLiteSpeed versions from 1.6.15 up to, but not including, 1.7.16.1.
4
What type of vulnerability is CVE-2022-0074?
CVE-2022-0074 is categorized as an Untrusted Search Path vulnerability.
5
Where can CVE-2022-0074 be exploited?
CVE-2022-0074 can be exploited in LiteSpeed Technologies OpenLiteSpeed Web Server and LiteSpeed Web Server Container.