CVE-2022-37398 - CVE House
Back to Database
Status published High CVE-2022-37398

A stack-based buffer overflow vulnerability was found on ADM

Vulnerability Description

A stack-based buffer overflow vulnerability was found inside ADM when using WebDAV due to the lack of data size validation. An attacker can exploit this vulnerability to run arbitrary code. Affected ADM versions include: 3.5.9.RUE3 and below, 4.0.5.RVI1 and below as well as 4.1.0.RJD1 and below.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-37398

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • Nikita Abramov (Positive Technologies)

Affected Vendor

Affected Software

ADM
Vulnerable Versions:
3.5, 4.0, 4.1

Timeline

Official Publish: August 5th, 2022
Last Modified: June 2nd, 2026
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:H

Weaknesses (CWE)