CVE-2022-45793: Executable files writable by low-privileged users in Omron Sysmac Studio
Sysmac Studio installs executables in a directory with poor permissions. This can allow a locally-authenticated attacker to overwrite files which will result in code execution with privileges of a different user.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45793?
CVE-2022-45793 is classified as a medium severity vulnerability.
How do I fix CVE-2022-45793?
To fix CVE-2022-45793, ensure that file permissions in the installation directory of Sysmac Studio are properly configured to prevent unauthorized access.
Who is affected by CVE-2022-45793?
CVE-2022-45793 affects users of Omron Automation Software Sysmac Studio version 1.54 and earlier.
What are the implications of CVE-2022-45793?
The implications of CVE-2022-45793 include the potential for attackers to execute code with elevated privileges by overwriting files.
Is there a patch available for CVE-2022-45793?
Currently, no official patch has been released for CVE-2022-45793; users should apply best security practices until a patch is available.