CVE-2022-40497: Code Injection
Published Sep 27, 2022
·Updated
Wazuh v3.6.1 - v3.13.5, v4.0.0 - v4.2.7, and v4.3.0 - v4.3.7 were discovered to contain an authenticated remote code execution (RCE) vulnerability via the Active Response endpoint.
Affected Software
3 affected components
Wazuh Wazuh>=3.6.1<=3.13.5
Wazuh Wazuh>=4.0.0<=4.2.7
Wazuh Wazuh>=4.3.0<=4.3.7
Remediation
Patch Available
Event History
Sep 27, 2022
CVE Published
via MITRE·11:34 PM
Data Sourced
via MITRE·11:34 PM
Description
Sep 28, 2022
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2022-40497.
2
What is the severity of CVE-2022-40497?
The severity of CVE-2022-40497 is high. (CVSS score: 8.8)
3
What is the affected software?
The affected software is Wazuh versions 3.6.1 - 3.13.5, 4.0.0 - 4.2.7, and 4.3.0 - 4.3.7.
4
What is the vulnerability description of CVE-2022-40497?
CVE-2022-40497 is an authenticated remote code execution (RCE) vulnerability in Wazuh via the Active Response endpoint.
5
How can I fix CVE-2022-40497?
Update Wazuh to a version that is not affected. Refer to the vendor's website for patches and upgrades.