CVE-2022-34101: High severity crestron airmedia vulnerability
A vulnerability was discovered in the Crestron AirMedia Windows Application, version 4.3.1.39, in which a user can place a malicious DLL in a certain path to execute code and preform a privilege escalation attack.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-34101?
CVE-2022-34101 is a vulnerability discovered in the Crestron AirMedia Windows Application, version 4.3.1.39, that allows a user to place a malicious DLL in a certain path to execute code and perform a privilege escalation attack.
What is the severity of CVE-2022-34101?
The severity of CVE-2022-34101 is rated as high with a severity score of 7.8.
How can I fix CVE-2022-34101?
To fix CVE-2022-34101, it is recommended to update the Crestron AirMedia Windows Application to version 5.5.1.84 or later.
Where can I find more information about CVE-2022-34101?
You can find more information about CVE-2022-34101 in the Crestron Security Advisories and the AirMedia Windows Installer Release Notes.
What is CWE-427?
CWE-427 is a category of software weaknesses known as Uncontrolled Search Path Element that can lead to the execution of malicious code.