7.8
CVSSv3

CVE-2022-48422

Published: 19/03/2023 Updated: 08/08/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

ONLYOFFICE Docs up to and including 7.3 on certain Linux distributions allows local users to gain privileges via a Trojan horse libgcc_s.so.1 in the current working directory, which may be any directory in which an ONLYOFFICE document is located.

Vulnerable Product Search on Vulmon Subscribe to Product

onlyoffice document_server