First published: Fri Nov 25 2022(Updated: )
Remote code execution vulnerability can be achieved by using cookie values as paths to a file by this builder program. A remote attacker could exploit the vulnerability to execute or inject malicious code.
Credit: vuln@krcert.or.kr
Affected Software | Affected Version | How to fix |
---|---|---|
eyoom eyoom builder | <=4.5.3 | |
Linux kernel |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41158 has a high severity due to its potential for remote code execution.
To remediate CVE-2022-41158, upgrade to the latest version of Eyoom Builder that is higher than 4.5.3.
CVE-2022-41158 primarily affects users of Eyoom Builder versions up to and including 4.5.3.
CVE-2022-41158 is classified as a remote code execution vulnerability.
Yes, CVE-2022-41158 can be exploited remotely by an attacker using crafted cookie values.