First published: Tue Jul 19 2022(Updated: )
This issue affects: HYPR Windows WFA versions prior to 7.2; Unsafe Deserialization vulnerability in HYPR Workforce Access (WFA) before version 7.2 may allow local authenticated attackers to elevate privileges via a malicious serialized payload.
Credit: security@hypr.com
Affected Software | Affected Version | How to fix |
---|---|---|
HYPR Workforce Access | <7.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-1984 has a high severity due to the potential for local authenticated attackers to elevate privileges.
To fix CVE-2022-1984, update HYPR Workforce Access to version 7.2 or later.
The impact of CVE-2022-1984 allows local authenticated attackers to exploit unsafe deserialization to gain elevated privileges.
HYPR Workforce Access versions prior to 7.2 are affected by CVE-2022-1984.
No, CVE-2022-1984 requires local authentication to exploit the vulnerability.