CVE-2022-46640

Severity CVSS v4.0:
Pending analysis
Type:
CWE-77 Command Injection
Publication date:
18/04/2023
Last modified:
06/02/2025

Description

Nanoleaf Desktop App before v1.3.1 was discovered to contain a command injection vulnerability which is exploited via a crafted HTTP request.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nanoleaf:nanoleaf_desktop:*:*:*:*:*:*:*:* 1.3.1 (excluding)