VYPR
Unrated severityNVD Advisory· Published Jun 14, 2022· Updated Aug 3, 2024

CVE-2022-27176

CVE-2022-27176

Description

Incomplete filtering of special elements vulnerability exists in RevoWorks SCVX using 'File Sanitization Library' 1.043 and prior versions, RevoWorks Browser 2.2.67 and prior versions (when using 'File Sanitization Option'), and RevoWorks Desktop 2.1.84 and prior versions (when using 'File Sanitization Option'), which may allow an attacker to execute a malicious macro by having a user to download, import, and open a specially crafted file in the local environment.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • RevoWorks/SCVXllm-create
    Range: <=1.043
  • Range: <=2.2.67
  • J’s Communication Co., Ltd./RevoWorks SCVX, RevoWorks Browser, and RevoWorksv5
    Range: RevoWorks SCVX using 'File Sanitization Library' 1.043 and prior versions, RevoWorks Browser 2.2.67 and prior versions (when using 'File Sanitization Option'), and RevoWorks Desktop 2.1.84 and prior versions (when using 'File Sanitization Option')

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.