NA

CVE-2022-38745

Published: 24/03/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

Apache OpenOffice versions prior to 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.

Vulnerable Product Search on Vulmon Subscribe to Product

apache openoffice

Vendor Advisories

Synopsis Moderate: libreoffice security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for libreoffice is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as hav ...
DescriptionThe MITRE CVE dictionary describes this issue as: Apache OpenOffice versions before 4114 may be configured to add an empty entry to the Java class path This may lead to run arbitrary Java code from the current directory ...