CVE-2022-48199 - CVE House
Back to Database
Status published Unknown CVE-2022-48199

SoftPerfect NetWorx 7.1.1 on Windows allows an attacker to execute...

Vulnerability Description

SoftPerfect NetWorx 7.1.1 on Windows allows an attacker to execute a malicious binary with potentially higher privileges via a low-privileged user account that abuses the Notifications function. The Notifications function allows for arbitrary binary execution and can be modified by any user. The resulting binary execution will occur in the context of any user running NetWorx. If an attacker modifies the Notifications function to execute a malicious binary, the binary will be executed by every user running NetWorx on that system.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-48199

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

softperfect

View all reports →

Affected Software

networx
Vulnerable Versions:
7.1.1

Timeline

Official Publish: January 24th, 2023
Last Modified: April 2nd, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.