CVE-2022-23992

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
14/02/2022
Last modified:
08/08/2023

Description

XCOM Data Transport for Windows, Linux, and UNIX 11.6 releases contain a vulnerability due to insufficient input validation that could potentially allow remote attackers to execute arbitrary commands with elevated privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:broadcom:xcom_data_transport:11.6:*:*:*:*:linux:*:*
cpe:2.3:a:broadcom:xcom_data_transport:11.6:*:*:*:*:unix:*:*
cpe:2.3:a:broadcom:xcom_data_transport:11.6:*:*:*:*:windows:*:*