The Robot application in Ip-label Newtest before v8.5R0 was discovered to use weak signature checks on executed binaries, allowing attackers to have write access and escalate privileges via replacing NEWTESTREMOTEMANAGER.EXE.
References
Link | Resource |
---|---|
http://ip-label.com | Vendor Advisory |
http://newtest.com | Broken Link |
https://www.on-x.com/wp-content/uploads/2023/01/ON-X-Security-Advisory-Ip-label-Ekara-Newtest-CVE-2022-23334.pdf | Broken Link |
http://ip-label.com | Vendor Advisory |
http://newtest.com | Broken Link |
https://www.on-x.com/wp-content/uploads/2023/01/ON-X-Security-Advisory-Ip-label-Ekara-Newtest-CVE-2022-23334.pdf | Broken Link |
Configurations
History
21 Nov 2024, 06:48
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
References | () http://ip-label.com - Vendor Advisory | |
References | () http://newtest.com - Broken Link | |
References | () https://www.on-x.com/wp-content/uploads/2023/01/ON-X-Security-Advisory-Ip-label-Ekara-Newtest-CVE-2022-23334.pdf - Broken Link |
Information
Published : 2023-01-30 16:15
Updated : 2024-11-21 06:48
NVD link : CVE-2022-23334
Mitre link : CVE-2022-23334
CVE.ORG link : CVE-2022-23334
JSON object : View
Products Affected
ip-label
- newtest
CWE
CWE-347
Improper Verification of Cryptographic Signature