CVE-2022-1746

HIGH

Dominion Voting Systems ImageCast X - Incorrect Privilege Assignment

Title source: llm
STIX 2.1

Description

The authentication mechanism used by poll workers to administer voting using the tested version of Dominion Voting Systems ImageCast X can expose cryptographic secrets used to protect election information. An attacker could leverage this vulnerability to gain access to sensitive information and perform privileged actions, potentially affecting other election equipment.

References (1)

Core 1
Core References
Mitigation, Third Party Advisory, US Government Resource x_refsource_misc
https://www.cisa.gov/uscert/ics/advisories/icsa-22-154-01

Scores

CVSS v3 7.6
EPSS 0.0028
EPSS Percentile 19.2%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-266 CWE-863
Status published
Products (3)
dominionvoting/imagecast_x
dominionvoting/imagecast_x 5.5.10.30
dominionvoting/imagecast_x 5.5.10.32
Published Jun 24, 2022
Tracked Since Feb 18, 2026