CVE-2022-29303
unknown
KEV
CVSS v3
—
CVSS v2
—
VIR risk
1.5
Description
SolarView Compact contains a command injection vulnerability due to improper validation of input values on the send test mail console of the product's web server.
CISA KEV
- Vendor
- SolarView
- Product
- Compact
- Due date
- 2023-08-03
Predictions
Exploit likelihood
99%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cisa-kev — https://jvn.jp/en/vu/JVNVU92327282/; https://nvd.nist.gov/vuln/detail/CVE-2022-29303
Exploits
References
Verify integrity in audit chain (admin only). AS-IS.