Critical severity9.8NVD Advisory· Published Jan 31, 2023· Updated Jun 17, 2026
CVE-2022-39060
CVE-2022-39060
Description
ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation. An unauthenticated remote attacker can exploit this vulnerability to access and modify HKEY_CURRENT_USER subkey (ex: AutoRUN) in Registry where malicious scripts can be executed to take control of the system or to terminate the service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:changingtec:megaservisignadapter:*:*:*:*:*:windows:*:*+ 2 more
- cpe:2.3:a:changingtec:megaservisignadapter:*:*:*:*:*:windows:*:*range: <1.0.22.1004
- (no CPE)range: 1.0.17.0823
- (no CPE)
Patches
Vulnerability mechanics
References
1- www.twcert.org.tw/tw/cp-132-6887-6ed4f-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.