CVE-2022-38123: Insufficient validation of plugin files
Published Dec 6, 2022
·Updated
Improper Input Validation of plugin files in Administrator Interface of Secomea GateManager allows a server administrator to inject code into the GateManager interface.
This issue affects:
Secomea GateManager
versions prior to 10.0.
Affected Software
1 affected component
Secomea GateManager<10.0.622395010
Event History
Dec 6, 2022
CVE Published
via MITRE·03:58 PM
Data Sourced
via MITRE·03:58 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this security issue?
The vulnerability ID of this security issue is CVE-2022-38123.
2
What is the severity of CVE-2022-38123?
The severity of CVE-2022-38123 is high with a CVSS score of 7.2.
3
What is the affected software by CVE-2022-38123?
The affected software by CVE-2022-38123 is Secomea GateManager versions prior to 10.0.
4
How does CVE-2022-38123 impact Secomea GateManager?
CVE-2022-38123 allows a server administrator to inject code into the GateManager interface.
5
How can I fix the vulnerability CVE-2022-38123?
To fix the vulnerability CVE-2022-38123, update to Secomea GateManager version 10.0 or later.