CVE-2022-27935: High severity pexip infinity vulnerability
Published Jul 17, 2022
·Updated
Pexip Infinity before 27.3 allows remote attackers to trigger a software abort via Epic Telehealth.
Affected Software
1 affected component
Pexip Pexip Infinity>=25.0<27.3
Event History
Jul 17, 2022
CVE Published
via MITRE·08:55 PM
Data Sourced
via MITRE·08:55 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-27935?
CVE-2022-27935 has a high severity score due to its ability to allow remote attackers to trigger a software abort.
2
How do I fix CVE-2022-27935?
To fix CVE-2022-27935, you should upgrade Pexip Infinity to version 27.3 or later.
3
What versions of Pexip Infinity are affected by CVE-2022-27935?
CVE-2022-27935 affects Pexip Infinity versions from 25.0 up to, but not including, 27.3.
4
Can CVE-2022-27935 be exploited without authentication?
Yes, CVE-2022-27935 can be exploited remotely without authentication, allowing attackers to execute their attacks.
5
What is the impact of CVE-2022-27935 if exploited?
If exploited, CVE-2022-27935 can cause a software abort in the Pexip Infinity system.