CVE-2022-25356: Medium severity mdaemon securitygateway vulnerability
Published Apr 5, 2022
·Updated
Alt-N MDaemon Security Gateway through 8.5.0 allows SecurityGateway.dll?view=login XML Injection.
Affected Software
1 affected component
Altn Securitygateway>=2.1.0<=8.5.0
Remediation
Event History
Apr 5, 2022
CVE Published
via MITRE·01:58 AM
Data Sourced
via MITRE·01:58 AM
Description
Data Sourced
via NVD·02:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-25356?
CVE-2022-25356 is a vulnerability in Alt-N MDaemon Security Gateway through 8.5.0 that allows XML Injection via the SecurityGateway.dll?view=login parameter.
2
What is the severity of CVE-2022-25356?
The severity of CVE-2022-25356 is medium with a CVSS score of 5.3.
3
How does CVE-2022-25356 affect Alt-N MDaemon Security Gateway?
Alt-N MDaemon Security Gateway versions up to 8.5.0 are affected by CVE-2022-25356.
4
How can I fix CVE-2022-25356?
Upgrade Alt-N MDaemon Security Gateway to a version higher than 8.5.0 to fix the CVE-2022-25356 vulnerability.
5
Where can I find more information about CVE-2022-25356?
You can find more information about CVE-2022-25356 on the Alt-N website and the Swascan security advisory and blog posts.