CVE-2022-43436 - CVE House
Back to Database
Status published High CVE-2022-43436

HWA JIUH DIGITAL TECHNOLOGY LTD. EasyTest - Arbitrary File Upload

Vulnerability Description

The File Upload function of EasyTest has insufficient filtering for special characters and file type. A remote attacker authenticated as a general user can upload and execute arbitrary files, to manipulate system or disrupt service.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-43436

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

HWA JIUH DIGITAL TECHNOLOGY LTD.

View all reports →

Affected Software

EasyTest
Vulnerable Versions:
22H29

Timeline

Official Publish: January 3rd, 2023
Last Modified: April 10th, 2025
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)