CVE-2022-26646: Critical severity Banking System Project Banking System vulnerability
Published Mar 30, 2022
·Updated
Online Banking System Protect v1.0 was discovered to contain a local file inclusion (LFI) vulnerability via the pages parameter.
Affected Software
2 affected components
Banking System Project Banking System=1.0
oretnom23 Banking System=1.0
Event History
Mar 30, 2022
CVE Published
via MITRE·10:47 PM
Data Sourced
via MITRE·10:47 PM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-26646?
CVE-2022-26646 is considered a high severity vulnerability due to its potential for local file inclusion attacks.
2
How do I fix CVE-2022-26646?
To fix CVE-2022-26646, update the Online Banking System Protect to a version that addresses this LFI vulnerability.
3
What types of attacks can CVE-2022-26646 facilitate?
CVE-2022-26646 can facilitate local file inclusion attacks, allowing unauthorized access to sensitive files on the server.
4
What software is affected by CVE-2022-26646?
CVE-2022-26646 affects Online Banking System Protect version 1.0 specifically.
5
Is CVE-2022-26646 remotely exploitable?
CVE-2022-26646 is a local file inclusion vulnerability, typically requiring local access for exploitation.