First published: Thu Sep 08 2022(Updated: )
Untrusted search path vulnerability in the installer of Device Software Manager prior to Ver.2.20.3.0 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Device Software Manager | <2.20.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-36403.
The title of this vulnerability is 'Untrusted search path vulnerability in the installer of Device Software Manager prior to Ver.2.20.3.'
The severity of CVE-2022-36403 is high with a score of 7.8.
This vulnerability affects Ricoh Device Software Manager prior to Ver.2.20.3.0.
An attacker can gain privileges by using a Trojan horse DLL in an unspecified directory.