Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product.
Metrics
Affected Vendors & Products
References
History
Wed, 23 Apr 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 16 Sep 2024 23:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product. | Vulnerabilities in the Drive Composer allow a low privileged attacker to create and write to a file anywhere on the file system as SYSTEM with arbitrary content as long as the file does not already exist. The Drive Composer installer file allows a low-privileged user to run a "repair" operation on the product. |

Status: PUBLISHED
Assigner: ABB
Published: 2022-06-15T18:47:49.978Z
Updated: 2025-04-23T18:14:35.662Z
Reserved: 2022-05-19T00:00:00.000Z
Link: CVE-2022-31217

Updated: 2024-08-03T07:11:39.867Z

Status : Modified
Published: 2022-06-15T19:15:11.420
Modified: 2024-11-21T07:04:09.297
Link: CVE-2022-31217

No data.