The Robot application in Ip-label Newtest before v8.5R0 was discovered to use weak signature checks on executed binaries, allowing attackers to have write access and escalate privileges via replacing NEWTESTREMOTEMANAGER.EXE.
References
Link | Resource |
---|---|
http://ip-label.com | Vendor Advisory |
http://newtest.com | Broken Link |
https://www.on-x.com/wp-content/uploads/2023/01/ON-X-Security-Advisory-Ip-label-Ekara-Newtest-CVE-2022-23334.pdf | Broken Link |
Configurations
Information
Published : 2023-01-30 08:15
Updated : 2023-02-06 13:01
NVD link : CVE-2022-23334
Mitre link : CVE-2022-23334
JSON object : View
CWE
CWE-347
Improper Verification of Cryptographic Signature
Products Affected
ip-label
- newtest