CVE Vulnerabilities

CVE-2022-48019

Improper Privilege Management

Published: Feb 06, 2023 | Modified: Feb 14, 2023
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

The components wfshbr64.sys and wfshbr32.sys in Another Eden before v3.0.20 and before v2.14.200 allows attackers to perform privilege escalation via a crafted payload.

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Another_eden Wfs * 2.14.200 (including)
Another_eden Wfs * 3.0.20 (including)

Potential Mitigations

References