PT-2022-17731 · Beckman Coulter · Remisol Advance

Published

2022-10-06

·

Updated

2022-10-11

·

CVE-2022-26236

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Beckman Coulter Remisol Advance versions 2.0.12.1 and prior
Description The default privileges for the running service Normand Remisol Advance Launcher allow non-privileged users to overwrite and manipulate executables and libraries, enabling attackers to access sensitive data.
Recommendations For versions 2.0.12.1 and prior, consider restricting access to the Normand Remisol Advance Launcher service to prevent non-privileged users from overwriting and manipulating executables and libraries until a patch is available.

Fix

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2022-26236

Affected Products

Remisol Advance