CVE-2022-43460

high

Description

Driver Distributor v2.2.3.1 and earlier contains a vulnerability where passwords are stored in a recoverable format. If an attacker obtains a configuration file of Driver Distributor, the encrypted administrator's credentials may be decrypted.

References

https://jvn.jp/en/jp/JVN22830348/

https://www.fujifilm.com/fbglobal/eng/company/news/notice/2023/0131_announce.html

Details

Source: MITRE

Published: 2023-02-13

Updated: 2023-02-24

Type: CWE-326

CVSS v3

Base Score: 7.5

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Impact Score: 3.6

Exploitability Score: 3.9

Severity: HIGH