CVE-2022-45183
14.11.2022, 08:15
Escalation of privileges in the Web Server in Ironman Software PowerShell Universal 2.x and 3.x allows an attacker with a valid app token to retrieve other app tokens by ID via an HTTP web request. Patched Versions are 3.5.3, 3.4.7, and 2.12.6.Enginsight
Vendor | Product | Version |
---|---|---|
ironmansoftware | powershell_universal | 2.0.0 ≤ 𝑥 < 2.12.6 |
ironmansoftware | powershell_universal | 3.0.0 ≤ 𝑥 < 3.4.7 |
ironmansoftware | powershell_universal | 3.5.0 ≤ 𝑥 < 3.5.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration