CVE-2022-1984: High severity hypr workforce access vulnerability
Published Jul 19, 2022
·Updated
This issue affects: HYPR Windows WFA versions prior to 7.2; Unsafe Deserialization vulnerability in HYPR Workforce Access (WFA) before version 7.2 may allow local authenticated attackers to elevate privileges via a malicious serialized payload.
Affected Software
1 affected component
HYPR Workforce Access<7.3.0
Event History
Jul 19, 2022
CVE Published
via MITRE·02:07 PM
Data Sourced
via MITRE·02:07 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-1984?
CVE-2022-1984 has a high severity due to the potential for local authenticated attackers to elevate privileges.
2
How do I fix CVE-2022-1984?
To fix CVE-2022-1984, update HYPR Workforce Access to version 7.2 or later.
3
What is the impact of CVE-2022-1984?
The impact of CVE-2022-1984 allows local authenticated attackers to exploit unsafe deserialization to gain elevated privileges.
4
Which versions of HYPR Workforce Access are affected by CVE-2022-1984?
HYPR Workforce Access versions prior to 7.2 are affected by CVE-2022-1984.
5
Can CVE-2022-1984 be exploited remotely?
No, CVE-2022-1984 requires local authentication to exploit the vulnerability.