CVE-2022-2334
Severity CVSS v4.0:
Pending analysis
Type:
CWE-427
Uncontrolled Search Path Element
Publication date:
17/08/2022
Last modified:
19/08/2022
Description
The application searches for a library dll that is not found. If an attacker can place a dll with this name, then the attacker can leverage it to execute arbitrary code on the targeted Softing Secure Integration Server V1.22.
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:softing:edgeaggregator:3.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:softing:edgeconnector:3.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:softing:opc:5.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:softing:opc_ua_c\+\+_software_development_kit:6:*:*:*:*:*:*:* | ||
| cpe:2.3:a:softing:secure_integration_server:1.22:*:*:*:*:*:*:* | ||
| cpe:2.3:a:softing:uagates:1.74:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



