CVE-2022-38661: HCL Workload Automation is affected by a vulnerability in Jlog component of the Master Domain Manager
Published Nov 4, 2022
·Updated
HCL Workload Automation could allow a local user to overwrite key system files which would cause the system to crash.
Affected Software
2 affected components
Hcltechsw Hcl Workload Automation<=9.4.0.7
Hcltechsw Hcl Workload Automation>=9.5.0.0<=9.5.0.5
Event History
Nov 4, 2022
CVE Published
via MITRE·08:47 PM
Data Sourced
via MITRE·08:47 PM
DescriptionSeverity
Frequently Asked Questions
1
What is CVE-2022-38661?
CVE-2022-38661 is a vulnerability in HCL Workload Automation that could allow a local user to overwrite key system files, causing the system to crash.
2
What is the severity of CVE-2022-38661?
CVE-2022-38661 has a severity rating of 7.1, which is considered high.
3
Which versions of HCL Workload Automation are affected by CVE-2022-38661?
CVE-2022-38661 affects HCL Workload Automation versions 9.4.0.7 and 9.5.0.0 to 9.5.0.5.
4
How can a local user exploit CVE-2022-38661?
A local user can exploit CVE-2022-38661 by overwriting key system files.
5
Is there a fix available for CVE-2022-38661?
Yes, fixes are available for CVE-2022-38661. Please refer to the official support article for more information: [link](https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0100939)