PT-2022-16393 · Unknown · Xcom Data Transport

Published

2022-02-14

·

Updated

2023-08-08

·

CVE-2022-23992

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions XCOM Data Transport for Windows, Linux, and UNIX version 11.6
Description The issue is due to insufficient input validation, which could potentially allow remote attackers to execute arbitrary commands with elevated privileges.
Recommendations For XCOM Data Transport for Windows, Linux, and UNIX version 11.6, update to a version that includes input validation to prevent remote attackers from executing arbitrary commands with elevated privileges.

Fix

RCE

Weakness Enumeration

Related Identifiers

CVE-2022-23992

Affected Products

Xcom Data Transport