ChangingTec MegaServiSignAdapter - Improper Input Validation
Vulnerability Description
ChangingTech MegaServiSignAdapter component has a vulnerability of improper input validation. An unauthenticated remote attacker can exploit this vulnerability to access and modify HKEY_CURRENT_USER subkey (ex: AutoRUN) in Registry where malicious scripts can be executed to take control of the system or to terminate the service.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-39060
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- DEVCORE
More from ChangingTec
View All →Affected Vendor
ChangingTec
View all reports →