CVE-2022-27966
Published Mar 31, 2022
·Updated
Xshell v7.0.0099 and below contains a binary hijack vulnerability which allows attackers to execute arbitrary code via a crafted .exe file.
Affected Software
2 affected components
NetSarang Xshell<=7.0.0099
Microsoft Windows
Event History
Mar 31, 2022
CVE Published
via MITRE·10:11 PM
Data Sourced
via MITRE·10:11 PM
Description
Frequently Asked Questions
1
What is CVE-2022-27966?
CVE-2022-27966 is a binary hijack vulnerability in Xshell v7.0.0099 and below that allows attackers to execute arbitrary code via a crafted .exe file.
2
How does CVE-2022-27966 affect Xshell?
CVE-2022-27966 affects Xshell v7.0.0099 and below, potentially allowing attackers to execute arbitrary code.
3
What is the severity of CVE-2022-27966?
The severity of CVE-2022-27966 is medium with a CVSS score of 6.5.
4
How can I fix CVE-2022-27966?
To fix CVE-2022-27966, it is recommended to update Xshell to a version above 7.0.0099.
5
Where can I find more information about CVE-2022-27966?
More information about CVE-2022-27966 can be found in the provided references.