| ID | CVE-2022-27438 | 
      
          | Sažetak | Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check function. To exploit this vulnerability, a user must start an affected installation to trigger the update check. | 
      
          | Reference |  | 
      
        | CVSS | 
              | Base: | 5.1 |  | Impact: | 6.4 |  | Exploitability: | 4.9 |  | 
    
        | Pristup | 
            | Vektor | Složenost | Autentikacija |  
            | NETWORK | HIGH | NONE |  | 
      
        | Impact | 
            | Povjerljivost | Cjelovitost | Dostupnost |  
            | PARTIAL | PARTIAL | PARTIAL |  | 
    
        | CVSS vektor | AV:N/AC:H/Au:N/C:P/I:P/A:P | 
      
          | Zadnje važnije ažuriranje | 28-04-2023 - 19:03 | 
      
          | Objavljeno | 06-06-2022 - 23:15 |