CVE-2022-30670: Escalate Privileges to Server Admin - Robohelp Server
Published Jun 16, 2022
·Updated
RoboHelp Server earlier versions than RHS 11 Update 3 are affected by an Improper Authorization vulnerability which could lead to privilege escalation. An authenticated attacker could leverage this vulnerability to achieve full administrator privileges. Exploitation of this issue does not require user interaction.
Affected Software
6 affected components
Adobe RoboHelp Server<11
Adobe RoboHelp Server=11
Adobe RoboHelp Server=11-update1
Adobe RoboHelp Server=11-update2
Adobe RoboHelp Server=11-update3
Microsoft Windows
Event History
Jun 16, 2022
CVE Published
via MITRE·04:56 PM
Data Sourced
via MITRE·04:56 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-30670.
2
What is the severity of CVE-2022-30670?
The severity of CVE-2022-30670 is critical with a CVSS score of 8.8.
3
Which software versions are affected by CVE-2022-30670?
RoboHelp Server earlier versions than RHS 11 Update 3 are affected.
4
What is the impact of CVE-2022-30670?
The vulnerability could lead to privilege escalation, allowing an attacker to achieve full administrator privileges.
5
Is exploitation of CVE-2022-30670 difficult?
Exploitation of this vulnerability does not require user interaction.