CVE-2022-2142: Advantech iView
The affected product is vulnerable to a SQL injection with high attack complexity, which may allow an unauthorized attacker to disclose information.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-2142?
CVE-2022-2142 is a vulnerability that affects Advantech iView with a version up to 5.7.04.6469. It allows unauthorized attackers to perform SQL injection attacks, potentially exposing sensitive information.
How severe is CVE-2022-2142?
CVE-2022-2142 has a severity of high with a CVSS score of 5.9.
What is SQL injection?
SQL injection is a type of vulnerability that allows attackers to manipulate SQL queries sent to a database, potentially gaining unauthorized access or extracting sensitive information.
How can I fix CVE-2022-2142?
To fix CVE-2022-2142, it is recommended to apply the latest security patches provided by Advantech for the affected iView version.
Where can I find more information about CVE-2022-2142?
You can find more information about CVE-2022-2142 in the advisory published by the United States Cybersecurity and Infrastructure Security Agency (CISA) at https://www.cisa.gov/uscert/ics/advisories/icsa-22-179-03.