CVE-2022-30670

HIGH

RoboHelp Server < 11 Update 3 - Authenticated Privilege Escalation

Title source: llm
STIX 2.1

Description

RoboHelp Server earlier versions than RHS 11 Update 3 are affected by an Improper Authorization vulnerability which could lead to privilege escalation. An authenticated attacker could leverage this vulnerability to achieve full administrator privileges. Exploitation of this issue does not require user interaction.

References (1)

Core 1
Core References

Scores

CVSS v3 8.8
EPSS 0.0133
EPSS Percentile 67.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-285
Status published
Products (2)
adobe/robohelp_server 11 (4 CPE variants)
adobe/robohelp_server < 11
Published Jun 16, 2022
Tracked Since Feb 18, 2026