PT-2022-19907 · Fabasoft · Fabasoft Cloud Enterprise Client

Tino Kautschke

·

Published

2022-09-19

·

Updated

2023-08-08

·

CVE-2022-29908

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Fabasoft Cloud Enterprise Client version 22.4.0043
Description The issue concerns the folioupdate service, which allows Local Privilege Escalation.
Recommendations For Fabasoft Cloud Enterprise Client version 22.4.0043, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Certificate Validation

Weakness Enumeration

Related Identifiers

CVE-2022-29908

Affected Products

Fabasoft Cloud Enterprise Client