PT-2022-24379 · Safe · Fme Server

Published

2022-09-19

·

Updated

2023-08-08

·

CVE-2022-38341

CVSS v3.1

7.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions Safe Software FME Server versions v2022.0.1.1 and below Safe Software FME Server version v2021.2.5 and below
Description The issue is related to the lack of server-side validation in Safe Software FME Server.
Recommendations For versions v2022.0.1.1 and below, consider implementing server-side validation to mitigate the risk. For version v2021.2.5 and below, consider implementing server-side validation to mitigate the risk. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2022-38341

Affected Products

Fme Server