CVE-2022-34043: High severity nomachine vulnerability
Published Jun 29, 2022
·Updated
Incorrect permissions for the folder C:\ProgramData\NoMachine\var\uninstall of Nomachine v7.9.2 allows attackers to perform a DLL hijacking attack and execute arbitrary code.
Affected Software
1 affected component
NoMachine Nomachine Windows=7.9.2
Event History
Jun 29, 2022
CVE Published
via MITRE·12:25 PM
Data Sourced
via MITRE·12:25 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-34043.
2
What is the severity of CVE-2022-34043?
The severity of CVE-2022-34043 is high with a score of 7.3.
3
Which software version is affected by CVE-2022-34043?
Nomachine v7.9.2 is affected by CVE-2022-34043.
4
What can an attacker do with CVE-2022-34043?
An attacker can perform a DLL hijacking attack and execute arbitrary code with CVE-2022-34043.
5
Is there a fix available for CVE-2022-34043?
There is currently no available fix for CVE-2022-34043. It is recommended to update to a fixed version when it becomes available.