CVE-2022-48362: Authenticated Path Traversal Vulnerability

CVE ID: CVE-2022-48362
Severity: Medium
Update Released Build: 10.1.2127.1
Update Released Date: July 15, 2021

What was the problem?

An authenticated path traversal vulnerability in Endpoint Central (CVE-2022-48362 ) was identified. This has now been fixed by enhancing file path validation.

How do I fix it?

To apply the fix, please follow the steps below:

  1. Login to your Endpoint Central console, click on your current build number on the top right corner.
  2. You'll be able to find the latest build applicable to you. Download the PPM and update.

Note: This vulnerability is applicable for Endpoint Central Cloud as well, which has been fixed.

Help

For any further questions or concerns on this, please write to our support team at endpointcentral-support@manageengine.com