CVE-2022-26655: Input Validation
Published Jul 17, 2022
·Updated
Pexip Infinity 27.x before 27.3 has Improper Input Validation. The client API allows remote attackers to trigger a software abort via a gateway call into Teams.
Affected Software
1 affected component
Pexip Pexip Infinity>=27.0<27.3
Event History
Jul 17, 2022
CVE Published
via MITRE·08:18 PM
Data Sourced
via MITRE·08:18 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-26655?
CVE-2022-26655 is considered a critical vulnerability due to its potential to allow remote attackers to trigger a software abort.
2
How do I fix CVE-2022-26655?
To fix CVE-2022-26655, upgrade Pexip Infinity to version 27.3 or later.
3
Who is affected by CVE-2022-26655?
CVE-2022-26655 affects users of Pexip Infinity versions 27.0 to 27.2.
4
What type of vulnerability is CVE-2022-26655?
CVE-2022-26655 is classified as an improper input validation vulnerability.
5
Can CVE-2022-26655 be exploited remotely?
Yes, CVE-2022-26655 can be exploited remotely by attackers via the client API.