PT-2023-1742 · Onlyoffice · Onlyoffice Docs
Alef
·
Published
2023-03-18
·
Updated
2025-02-27
·
CVE-2022-48422
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
ONLYOFFICE Docs versions prior to 7.3
Description
The issue is related to the use of an insecure path search in the ONLYOFFICE Docs online text document editor. Exploitation of this issue may allow an attacker to execute arbitrary code by substituting a legitimate DLL file with a malicious library. This can be achieved by using a Trojan horse
libgcc s.so.1 in the current working directory, which can be any directory where an ONLYOFFICE document is located.Recommendations
For versions prior to 7.3, consider restricting access to the
libgcc s.so.1 library to minimize the risk of exploitation until a patch is available.
As a temporary workaround, avoid using directories that may contain malicious files as the current working directory for ONLYOFFICE Docs.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Untrusted Search Path
Uncontrolled Search Path Element
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Onlyoffice Docs