Description
LRM does not restrict the types of files that can be uploaded to the affected product. A malicious actor can upload any file type, including executable code that allows for a remote code exploit.
Published: 2022-06-24
Score: 10 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-24817 LRM does not restrict the types of files that can be uploaded to the affected product. A malicious actor can upload any file type, including executable code that allows for a remote code exploit.
History

Wed, 16 Apr 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Illumina Iseq 100 Local Run Manager Miniseq Miseq Miseq Dx Nextseq 500 Nextseq 550 Nextseq 550dx
cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published:

Updated: 2025-04-16T16:17:02.637Z

Reserved: 2022-04-28T00:00:00.000Z

Link: CVE-2022-1519

cve-icon Vulnrichment

Updated: 2024-08-03T00:10:03.403Z

cve-icon NVD

Status : Modified

Published: 2022-06-24T15:15:09.333

Modified: 2024-11-21T06:40:53.367

Link: CVE-2022-1519

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses