CVE-2022-23992: Input Validation
Published Feb 14, 2022
·Updated
XCOM Data Transport for Windows, Linux, and UNIX 11.6 releases contain a vulnerability due to insufficient input validation that could potentially allow remote attackers to execute arbitrary commands with elevated privileges.
Affected Software
3 affected components
Broadcom Xcom Data Transport Linux=11.6
Broadcom Xcom Data Transport Unix=11.6
Broadcom Xcom Data Transport Windows=11.6
Event History
Feb 14, 2022
CVE Published
via MITRE·09:04 PM
Data Sourced
via MITRE·09:04 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2022-23992.
2
What is the severity level of CVE-2022-23992?
CVE-2022-23992 has a severity level of critical.
3
What is the affected software for CVE-2022-23992?
The affected software for CVE-2022-23992 is XCOM Data Transport for Windows, Linux, and UNIX 11.6 releases.
4
What is the risk of CVE-2022-23992?
CVE-2022-23992 has a risk level of 9.8 (out of 10).
5
Is there a fix available for CVE-2022-23992?
Yes, you can find more information about the fix for CVE-2022-23992 on the Broadcom Support website.