CVE-2022-32965

OMICARD EDM has a hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary code, manipulate system data and disrupt service.
Configurations

Configuration 1

cpe:2.3:a:omicard_edm_project:omicard_edm:*:*:*:*:*:*:*:*

Information

Published : 2022-08-04 10:15

Updated : 2022-10-26 02:49


NVD link : CVE-2022-32965

Mitre link : CVE-2022-32965

Products Affected
No products.
CWE