Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-38745


Apache OpenOffice versions before 4.1.14 may be configured to add an empty entry to the Java class path. This may lead to run arbitrary Java code from the current directory.


Published

2023-03-24T16:15:08.130

Last Modified

2025-02-13T15:15:11.950

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-94
    CWE-427
    CWE-1188

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application apache openoffice < 4.1.14 Yes

References