packetstormsecurity.com
http://packetstormsecurity.com/files/171549/OPSWAT-Metadefender-Core-4.21.1-Privilege-Escalation.html CVE-2022-32272
CRITICAL
OPSWAT Metadefender Core - Privilege Escalation
Record summary
CVE-2022-32272 has a selected CVSS score of 9.8 (critical); EIP currently links 1 catalogued exploit.
Description
OPSWAT MetaDefender Core before 5.1.2, MetaDefender ICAP before 4.12.1, and MetaDefender Email Gateway Security before 5.6.1 have incorrect access control, resulting in privilege escalation.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOPSWAT Metadefender Core - Privilege EscalationExploitDB exploitby Ulascan YildirimNot analyzed1 file
References
8docs.opswat.com
https://docs.opswat.com/mdcore/release-notes docs.opswat.com
https://docs.opswat.com/mdemail/release-notes docs.opswat.com
https://docs.opswat.com/mdemail/release-notes/version-5-6-1 docs.opswat.com
https://docs.opswat.com/mdicap/release-notes docs.opswat.com
https://docs.opswat.com/mdicap/release-notes/version-4-12-1 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-32272 opswat.com
https://opswat.com/