nist-gov/nvd.nist.gov/vuln/cvmap/report/10367
2025-03-05 18:59:57 +00:00

2262 lines
89 KiB
Text

<!DOCTYPE html>
<html lang="en">
<head>
<title>NVD CNA Status</title>
<meta http-equiv="content-type" content="text/html; charset=UTF-8" />
<meta http-equiv="content-style-type" content="text/css" />
<meta http-equiv="content-script-type" content="text/javascript" />
<meta name="viewport" content="width=device-width, initial-scale=1.0" />
<link href="/site-scripts/font-awesome/css/font-awesome.min.css"
type="text/css" rel="stylesheet" />
<link href="/site-media/bootstrap/css/bootstrap.min.css"
type="text/css" rel="stylesheet" />
<link href="/site-media/bootstrap/css/bootstrap-theme.min.css"
type="text/css" rel="stylesheet" />
<link
href="/site-scripts/eonasdan-bootstrap-datetimepicker/build/css/bootstrap-datetimepicker.min.css"
type="text/css" rel="stylesheet" />
<link href="/site-media/css/nist-fonts.css" type="text/css"
rel="stylesheet" />
<link href="/site-media/css/base-style.css" type="text/css"
rel="stylesheet" />
<link href="/site-media/css/media-resize.css" type="text/css"
rel="stylesheet" />
<meta name="theme-color" content="#000000">
<script src="/site-scripts/jquery/dist/jquery.min.js"
type="text/javascript"></script>
<script src="/site-scripts/jquery-visible/jquery.visible.min.js"
type="text/javascript"></script>
<script src="/site-scripts/underscore/underscore-min.js"
type="text/javascript"></script>
<script src="/site-media/bootstrap/js/bootstrap.js"
type="text/javascript"></script>
<script src="/site-scripts/moment/min/moment.min.js"
type="text/javascript"></script>
<script
src="/site-scripts/eonasdan-bootstrap-datetimepicker/build/js/bootstrap-datetimepicker.min.js"
type="text/javascript"></script>
<script src="/site-media/js/megamenu.js" type="text/javascript"></script>
<script src="/site-media/js/nist-exit-script.js"
type="text/javascript"></script>
<script src="/site-media/js/forms.js" type="text/javascript"></script>
<script
src="/site-media/js/federated-analytics.all.min.js?agency=NIST&amp;subagency=nvd&amp;pua=UA-37115410-41&amp;yt=true"
type="text/javascript" id="_fed_an_js_tag"></script>
<!-- Google tag (gtag.js) -->
<script async src="https://www.googletagmanager.com/gtag/js?id=G-4KKFZP12LQ"></script>
<script> window.dataLayer = window.dataLayer || []; function gtag(){dataLayer.push(arguments);} gtag('js', new Date()); gtag('config', 'G-4KKFZP12LQ'); </script>
<style id="antiClickjack">
body>* {
display: none !important;
}
#antiClickjack {
display: block !important;
}
</style>
<noscript>
<style id="antiClickjackNoScript">
body>* {
display: block !important;
}
#antiClickjack {
display: none !important;
}
</style>
</noscript>
<script type="text/javascript" id="antiClickjackScript">
if (self === top) {
// no clickjacking
var antiClickjack = document.getElementById("antiClickjack");
antiClickjack.parentNode.removeChild(antiClickjack);
} else {
setTimeout(tryForward(), 5000);
}
function tryForward() {
top.location = self.location;
}
</script>
<meta charset="UTF-8">
<link href="/site-media/css/nvd-style.css" type="text/css"
rel="stylesheet" />
<link href="/site-media/images/favicons/apple-touch-icon.png"
rel="apple-touch-icon" type="image/png" sizes="180x180" />
<link href="/site-media/images/favicons/favicon-32x32.png"
rel="icon" type="image/png" sizes="32x32" />
<link href="/site-media/images/favicons/favicon-16x16.png"
rel="icon" type="image/png" sizes="16x16" />
<link href="/site-media/images/favicons/manifest.json"
rel="manifest" />
<link href="/site-media/images/favicons/safari-pinned-tab.svg"
rel="mask-icon" color="#000000" />
<link href="/site-media/images/favicons/favicon.ico"
rel="shortcut icon" />
<meta name="msapplication-config" content="/site-media/images/favicons/browserconfig.xml" />
<link href="/site-media/images/favicons/favicon.ico"
rel="shortcut icon" type="image/x-icon" />
<link href="/site-media/images/favicons/favicon.ico" rel="icon"
type="image/x-icon" />
<meta charset="UTF-8">
</head>
<body>
<header role="banner" title="Site Banner">
<div id="antiClickjack" style="display: none">
<h1>You are viewing this page in an unauthorized frame window.</h1>
<p>
This is a potential security issue, you are being redirected to
<a href="https://nvd.nist.gov">https://nvd.nist.gov</a>
</p>
</div>
<div>
<section class="usa-banner" aria-label="Official government website">
<div class="usa-accordion container">
<header class="usa-banner__header">
<noscript>
<p style="font-size: 0.85rem; font-weight: bold;">You have JavaScript disabled. This site requires JavaScript to be enabled for complete site functionality.</p>
</noscript>
<img class="usa-banner__header-flag"
src="/site-media/images/usbanner/us_flag_small.png" alt="U.S. flag">
&nbsp;
<span class="usa-banner__header-text">An official website of the United States government</span>
<button id="gov-banner-button" class="usa-accordion__button usa-banner__button" data-toggle="collapse" data-target="#gov-banner" aria-expanded="false" aria-controls="gov-banner">
<span class="usa-banner__button-text">Here's how you know</span>
</button>
</header>
<div class="usa-banner__content usa-accordion__content collapse" role="tabpanel" id="gov-banner" aria-expanded="true">
<div class="row">
<div class="col-md-5 col-sm-12">
<div class="row">
<div class="col-sm-2 col-xs-3">
<img class="usa-banner__icon usa-media-block__img"
src="/site-media/images/usbanner/icon-dot-gov.svg" alt="Dot gov">
</div>
<div class="col-sm-10 col-xs-9">
<p>
<strong>Official websites use .gov</strong>
<br>
A <strong>.gov</strong> website belongs to an official government organization in the United States.
</p>
</div>
</div>
</div>
<div class="col-md-5 col-sm-12">
<div class="row">
<div class="col-sm-2 col-xs-3">
<img class="usa-banner__icon usa-media-block__img"
src="/site-media/images/usbanner/icon-https.svg" alt="Https">
</div>
<div class="col-sm-10 col-xs-9">
<p>
<strong>Secure .gov websites use HTTPS</strong>
<br>
A <strong>lock</strong> (<img class="usa-banner__lock"
src="/site-media/images/usbanner/lock.svg" alt="Dot gov">) or <strong>https://</strong> means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.
</p>
</div>
</div>
</div>
</div>
</div>
</div>
</section>
</div>
<div>
<div>
<nav id="navbar" class="navbar">
<div id="nist-menu-container" class="container">
<div class="row">
<!-- Brand -->
<div class="col-xs-6 col-md-4 navbar-header"
style="height:104px">
<a class="navbar-brand"
href="https://www.nist.gov"
target="_blank" rel="noopener noreferrer"
id="navbar-brand-image"
style="padding-top: 36px">
<img alt="National Institute of Standards and Technology"
src="/site-media/images/nist/nist-logo.svg"
width="110" height="30">
</a>
</div>
<div class="col-xs-6 col-md-8 navbar-nist-logo">
<span id="nvd-menu-button" class="pull-right" style="margin-top: 26px"> <a href="#">
<span class="fa fa-bars"></span> <span id="nvd-menu-full-text"><span
class="hidden-xxs">NVD </span>MENU</span>
</a>
</span>
</div>
</div>
</div>
<div class="main-menu-row container">
<!-- Collect the nav links, forms, and other content for toggling -->
<div id="main-menu-drop" class="col-lg-12" style="display: none;">
<ul>
<li><a href="/general"> General <span
class="expander fa fa-plus" id="nvd-header-menu-general"
data-expander-name="general" data-expanded="false"> <span
class="element-invisible">Expand or Collapse</span>
</span>
</a>
<div style="display: none;" class="sub-menu"
data-expander-trigger="general">
<div class="row">
<div class="col-lg-4">
<p>
<a href="/general/nvd-dashboard">NVD Dashboard</a>
</p>
<p>
<a href="https://www.nist.gov/itl/nvd">News and Status Updates</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/general/faq">FAQ</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/general/visualizations">Visualizations</a>
</p>
<p>
<a href="/general/legal-disclaimer">Legal Disclaimer</a>
</p>
</div>
</div>
</div></li>
<li><a href="/vuln"> Vulnerabilities <span
class="expander fa fa-plus"
id="nvd-header-menu-vulnerabilities"
data-expander-name="vulnerabilities" data-expanded="false">
<span class="element-invisible">Expand or Collapse</span>
</span>
</a>
<div style="display: none;" class="sub-menu"
data-expander-trigger="vulnerabilities">
<div class="row">
<div class="col-lg-4">
<p>
<a href="/vuln/search">Search &amp; Statistics</a>
</p>
<p>
<a href="/vuln/categories">Weakness Types</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/vuln/data-feeds">Legacy Data Feeds</a>
</p>
<p>
<a href="/vuln/vendor-comments">Vendor Comments</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/vuln/cvmap">CVMAP</a>
</p>
</div>
</div>
</div></li>
<li><a href="/vuln-metrics/cvss#"> Vulnerability Metrics <span
class="expander fa fa-plus" id="nvd-header-menu-metrics"
data-expander-name="metrics" data-expanded="false"> <span
class="element-invisible">Expand or Collapse</span>
</span>
</a>
<div style="display: none;" class="sub-menu"
data-expander-trigger="metrics">
<div class="row">
<div class="col-lg-4">
<p>
<a href="/vuln-metrics/cvss/v4-calculator">CVSS v4.0
Calculators</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/vuln-metrics/cvss/v3-calculator">CVSS v3.x
Calculators</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/vuln-metrics/cvss/v2-calculator">CVSS v2.0
Calculator</a>
</p>
</div>
</div>
</div></li>
<li><a href="/products"> Products <span
class="expander fa fa-plus" id="nvd-header-menu-products"
data-expander-name="products" data-expanded="false"> <span
class="element-invisible">Expand or Collapse</span>
</span>
</a>
<div style="display: none;" class="sub-menu"
data-expander-trigger="products">
<div class="row">
<div class="col-lg-4">
<p>
<a href="/products/cpe">CPE Dictionary</a>
</p>
<p>
<a href="/products/cpe/search">CPE Search</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/products/cpe/statistics">CPE Statistics</a>
</p>
<p>
<a href="/products/swid">SWID</a>
</p>
</div>
<div class="col-lg-4"></div>
</div>
</div></li>
<li>
<a href="/developers">Developers<span
class="expander fa fa-plus" id="nvd-header-menu-developers"
data-expander-name="developers" data-expanded="false"> <span
class="element-invisible">Expand or Collapse</span>
</span>
</a>
<div style="display: none;" class="sub-menu"
data-expander-trigger="developers">
<div class="row">
<div class="col-lg-4">
<p>
<a href="/developers/start-here">Start Here</a>
</p>
<p>
<a href="/developers/request-an-api-key">Request an API Key</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/developers/vulnerabilities">Vulnerabilities</a>
</p>
<p>
<a href="/developers/products">Products</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/developers/data-sources">Data Sources</a>
</p>
<p>
<a href="/developers/terms-of-use">Terms of Use</a>
</p>
</div>
</div>
</div>
</li>
<li><a href="/contact"> Contact NVD </a></li>
<li><a href="/other"> Other Sites <span
class="expander fa fa-plus" id="nvd-header-menu-othersites"
data-expander-name="otherSites" data-expanded="false"> <span
class="element-invisible">Expand or Collapse</span>
</span>
</a>
<div style="display: none;" class="sub-menu"
data-expander-trigger="otherSites">
<div class="row">
<div class="col-lg-4">
<p>
<a href="https://ncp.nist.gov">Checklist (NCP) Repository</a>
</p>
<p>
<a href="https://ncp.nist.gov/cce">Configurations (CCE)</a>
</p>
<p>
<a href="https://csrc.nist.gov/Projects/risk-management/sp800-53-controls/release-search">800-53 Controls</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a
href="https://csrc.nist.gov/projects/scap-validation-program">SCAP
Validated Tools</a>
</p>
<p>
<a
href="https://csrc.nist.gov/projects/security-content-automation-protocol">SCAP</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a
href="https://csrc.nist.gov/projects/united-states-government-configuration-baseline">USGCB</a>
</p>
</div>
</div>
</div></li>
<li><a href="/search"> Search <span
class="expander fa fa-plus" id="nvd-header-menu-search"
data-expander-name="search" data-expanded="false"> <span
class="element-invisible">Expand or Collapse</span>
</span>
</a>
<div style="display: none;" class="sub-menu"
data-expander-trigger="search">
<div class="row">
<div class="col-lg-4">
<p>
<a href="/vuln/search">Vulnerability Search</a>
</p>
</div>
<div class="col-lg-4">
<p>
<a href="/products/cpe/search">CPE Search</a>
</p>
</div>
</div>
</div></li>
</ul>
</div>
<!-- /#mobile-nav-container -->
</div>
</nav>
<section id="itl-header" class="has-menu">
<div class="container">
<div class="row">
<div class="col-sm-12 col-md-8">
<h2 class="hidden-xs hidden-sm">
<a href="https://www.nist.gov/itl" target="_blank" rel="noopener noreferrer">Information Technology Laboratory</a>
</h2>
<h1 class="hidden-xs hidden-sm">
<a id="nvd-header-link"
href="/">National Vulnerability Database</a>
</h1>
<h1 class="hidden-xs text-center hidden-md hidden-lg"
>National Vulnerability Database</h1>
<h1 class="hidden-sm hidden-md hidden-lg text-center"
>NVD</h1>
</div>
<div class="col-sm-12 col-md-4">
<a style="width: 100%; text-align: center; display: block;padding-top: 14px">
<img id="img-logo-nvd-lg"
alt="National Vulnerability Database"
src="/site-media/images/F_NIST-Logo-NVD-white.svg"
width="500" height="100">
</a>
</div>
</div>
</div>
</section>
</div>
</div>
</header>
<main>
<div>
<div id="body-section" class="container">
<div class="row">
<ol class="breadcrumb">
<li><a href="/vuln" class="CMSBreadCrumbsLink">Vulnerabilities</a><a href="/vuln/cvmap" class="CMSBreadCrumbsLink">CVMAP</a></li>
</ol>
</div>
<div>
<div id="wldAlertNewerReport"
class="alert alert-warning"
role="alert">
This is not the latest report. Click
<a id="wldLinkToLatestReport"
href="/vuln/cvmap/report/17898"
target="_blank" rel="noopener noreferrer">
here to view the latest report.
</a>
</div>
<h2 id="wldHeader">
<span id="wldCategory">CVSS v3.1</span>
Statistics for
<span id="wldSourceName">Checkmk GmbH</span>
as of
<span id="wldCreated">05/10/2023</span>
</h2>
<div class="row">
<div class="col-md-3">
<label>Total Number CVEs Submitted</label>
</div>
<div id="wldSubmitCount"
class="col-md-1">19</div>
<div class="col-md-3">
<label>Number of Metrics Compared</label>
</div>
<div id="wldCompareCount"
class="col-md-1">152</div>
<div class="col-md-3">
<label>Acceptance Level Thresholds</label>
</div>
<div class="col-md-1">
&nbsp;
</div>
</div>
<div class="row">
<div class="col-md-3">
<label>Total Number CVEs Reviewed</label>
</div>
<div id="wldReviewCount"
class="col-md-1">19</div>
<div class="col-md-3">
<label>Analyst Match Count</label>
</div>
<div id="wldMatchCount"
class="col-md-1">123</div>
<div class="col-md-3">
Reference
</div>
<div class="col-md-1">
0-69.9%
</div>
</div>
<div class="row">
<div class="col-md-2">
<label>Acceptance Level</label>
</div>
<div class="col-md-2">
<table>
<tr>
<td>
<!-- Acceptance Level Icon -->
<div style="height:33px; width:33px;">
<object id="wldIconReference"
data="/site-media/images/svg/NVD_Reference_Stack_Plain.svg"
type="image/svg+xml"
title="Acceptance Level Icon">
</object>
</div>
</td>
<td id="wldAcceptLevel">Reference</td>
</tr>
</table>
</div>
<div class="col-md-3">
<label>Match Percent</label>
</div>
<div id="wldMatchPercent"
class="col-md-1">80.9</div>
<div class="col-md-3">
Contributor
</div>
<div class="col-md-1">
70-94.9%
</div>
</div>
<div class="row">
<div class="col-md-8">
&nbsp;
</div>
<div class="col-md-3">
Provider
</div>
<div class="col-md-1">
95-100%
</div>
</div>
<div class="row">
<table id="wldTable"
class="table table-condensed">
<thead>
<tr>
<th scope="col" nowrap>
CVE
</th>
<th scope="col" nowrap>
CNA Value
</th>
<th scope="col" nowrap>
Alignment
</th>
<th scope="col" nowrap>
NIST Value
</th>
<th scope="col" nowrap>
Reason
</th>
</tr>
</thead>
<tbody>
<tr id="wldRow1">
<td rowspan="8"
id="colCveId-0">
<a href="/vuln/detail/CVE-2022-4884"
id="cveDetailAnchor-0">CVE-2022-4884</a>
&nbsp;
<span>(5 of 8)</span>
</td>
<td id="colCnaVal-0">Attack Vector (AV) Network</td>
<td id="colAlign-0">
</td>
<td id="colNistVal-0">Attack Vector (AV) Network</td>
<td id="colReason-0"></td>
</tr>
<tr id="wldRow2">
<td id="colCnaVal-1">Attack Complexity (AC) Low</td>
<td id="colAlign-1">
</td>
<td id="colNistVal-1">Attack Complexity (AC) Low</td>
<td id="colReason-1"></td>
</tr>
<tr id="wldRow3">
<td id="colCnaVal-2">Privileges Required (PR) High</td>
<td id="colAlign-2">
</td>
<td id="colNistVal-2">Privileges Required (PR) High</td>
<td id="colReason-2"></td>
</tr>
<tr id="wldRow4">
<td id="colCnaVal-3" class="alert alert-warning">User Interaction (UI) Required</td>
<td id="colAlign-3" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-3" class="alert alert-warning">User Interaction (UI) None</td>
<td id="colReason-3">User Interaction not identified</td>
</tr>
<tr id="wldRow5">
<td id="colCnaVal-4">Scope (S) Unchanged</td>
<td id="colAlign-4">
</td>
<td id="colNistVal-4">Scope (S) Unchanged</td>
<td id="colReason-4"></td>
</tr>
<tr id="wldRow6">
<td id="colCnaVal-5">Confidentiality (C) None</td>
<td id="colAlign-5">
</td>
<td id="colNistVal-5">Confidentiality (C) None</td>
<td id="colReason-5"></td>
</tr>
<tr id="wldRow7">
<td id="colCnaVal-6" class="alert alert-warning">Integrity (I) Low</td>
<td id="colAlign-6" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-6" class="alert alert-warning">Integrity (I) High</td>
<td id="colReason-6">No limiting factors for integrity listed</td>
</tr>
<tr id="wldRow8">
<td id="colCnaVal-7" class="alert alert-warning">Availability (A) Low</td>
<td id="colAlign-7" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-7" class="alert alert-warning">Availability (A) None</td>
<td id="colReason-7">No availability impacts identified</td>
</tr>
<tr id="wldRow9">
<td rowspan="8"
id="colCveId-8">
<a href="/vuln/detail/CVE-2022-43440"
id="cveDetailAnchor-8">CVE-2022-43440</a>
&nbsp;
<span>(7 of 8)</span>
</td>
<td id="colCnaVal-8">Attack Vector (AV) Local</td>
<td id="colAlign-8">
</td>
<td id="colNistVal-8">Attack Vector (AV) Local</td>
<td id="colReason-8"></td>
</tr>
<tr id="wldRow10">
<td id="colCnaVal-9">Attack Complexity (AC) Low</td>
<td id="colAlign-9">
</td>
<td id="colNistVal-9">Attack Complexity (AC) Low</td>
<td id="colReason-9"></td>
</tr>
<tr id="wldRow11">
<td id="colCnaVal-10">Privileges Required (PR) Low</td>
<td id="colAlign-10">
</td>
<td id="colNistVal-10">Privileges Required (PR) Low</td>
<td id="colReason-10"></td>
</tr>
<tr id="wldRow12">
<td id="colCnaVal-11">User Interaction (UI) None</td>
<td id="colAlign-11">
</td>
<td id="colNistVal-11">User Interaction (UI) None</td>
<td id="colReason-11"></td>
</tr>
<tr id="wldRow13">
<td id="colCnaVal-12" class="alert alert-warning">Scope (S) Changed</td>
<td id="colAlign-12" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-12" class="alert alert-warning">Scope (S) Unchanged</td>
<td id="colReason-12">Unclear if Scope change occurs. No identification of security boundaries being crossed.</td>
</tr>
<tr id="wldRow14">
<td id="colCnaVal-13">Confidentiality (C) High</td>
<td id="colAlign-13">
</td>
<td id="colNistVal-13">Confidentiality (C) High</td>
<td id="colReason-13"></td>
</tr>
<tr id="wldRow15">
<td id="colCnaVal-14">Integrity (I) High</td>
<td id="colAlign-14">
</td>
<td id="colNistVal-14">Integrity (I) High</td>
<td id="colReason-14"></td>
</tr>
<tr id="wldRow16">
<td id="colCnaVal-15">Availability (A) High</td>
<td id="colAlign-15">
</td>
<td id="colNistVal-15">Availability (A) High</td>
<td id="colReason-15"></td>
</tr>
<tr id="wldRow17">
<td rowspan="8"
id="colCveId-16">
<a href="/vuln/detail/CVE-2022-46302"
id="cveDetailAnchor-16">CVE-2022-46302</a>
&nbsp;
<span>(8 of 8)</span>
</td>
<td id="colCnaVal-16">Attack Vector (AV) Local</td>
<td id="colAlign-16">
</td>
<td id="colNistVal-16">Attack Vector (AV) Local</td>
<td id="colReason-16"></td>
</tr>
<tr id="wldRow18">
<td id="colCnaVal-17">Attack Complexity (AC) Low</td>
<td id="colAlign-17">
</td>
<td id="colNistVal-17">Attack Complexity (AC) Low</td>
<td id="colReason-17"></td>
</tr>
<tr id="wldRow19">
<td id="colCnaVal-18">Privileges Required (PR) Low</td>
<td id="colAlign-18">
</td>
<td id="colNistVal-18">Privileges Required (PR) Low</td>
<td id="colReason-18"></td>
</tr>
<tr id="wldRow20">
<td id="colCnaVal-19">User Interaction (UI) None</td>
<td id="colAlign-19">
</td>
<td id="colNistVal-19">User Interaction (UI) None</td>
<td id="colReason-19"></td>
</tr>
<tr id="wldRow21">
<td id="colCnaVal-20">Scope (S) Changed</td>
<td id="colAlign-20">
</td>
<td id="colNistVal-20">Scope (S) Changed</td>
<td id="colReason-20"></td>
</tr>
<tr id="wldRow22">
<td id="colCnaVal-21">Confidentiality (C) High</td>
<td id="colAlign-21">
</td>
<td id="colNistVal-21">Confidentiality (C) High</td>
<td id="colReason-21"></td>
</tr>
<tr id="wldRow23">
<td id="colCnaVal-22">Integrity (I) High</td>
<td id="colAlign-22">
</td>
<td id="colNistVal-22">Integrity (I) High</td>
<td id="colReason-22"></td>
</tr>
<tr id="wldRow24">
<td id="colCnaVal-23">Availability (A) High</td>
<td id="colAlign-23">
</td>
<td id="colNistVal-23">Availability (A) High</td>
<td id="colReason-23"></td>
</tr>
<tr id="wldRow25">
<td rowspan="8"
id="colCveId-24">
<a href="/vuln/detail/CVE-2022-46303"
id="cveDetailAnchor-24">CVE-2022-46303</a>
&nbsp;
<span>(6 of 8)</span>
</td>
<td id="colCnaVal-24" class="alert alert-warning">Attack Vector (AV) Adjacent Network</td>
<td id="colAlign-24" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-24" class="alert alert-warning">Attack Vector (AV) Network</td>
<td id="colReason-24">Applied AV:N due to lack of available Information for NVD Analyst</td>
</tr>
<tr id="wldRow26">
<td id="colCnaVal-25">Attack Complexity (AC) High</td>
<td id="colAlign-25">
</td>
<td id="colNistVal-25">Attack Complexity (AC) High</td>
<td id="colReason-25"></td>
</tr>
<tr id="wldRow27">
<td id="colCnaVal-26">Privileges Required (PR) Low</td>
<td id="colAlign-26">
</td>
<td id="colNistVal-26">Privileges Required (PR) Low</td>
<td id="colReason-26"></td>
</tr>
<tr id="wldRow28">
<td id="colCnaVal-27">User Interaction (UI) None</td>
<td id="colAlign-27">
</td>
<td id="colNistVal-27">User Interaction (UI) None</td>
<td id="colReason-27"></td>
</tr>
<tr id="wldRow29">
<td id="colCnaVal-28" class="alert alert-warning">Scope (S) Changed</td>
<td id="colAlign-28" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-28" class="alert alert-warning">Scope (S) Unchanged</td>
<td id="colReason-28">Unclear if Scope change occurs. No identification of security boundaries being crossed.</td>
</tr>
<tr id="wldRow30">
<td id="colCnaVal-29">Confidentiality (C) High</td>
<td id="colAlign-29">
</td>
<td id="colNistVal-29">Confidentiality (C) High</td>
<td id="colReason-29"></td>
</tr>
<tr id="wldRow31">
<td id="colCnaVal-30">Integrity (I) High</td>
<td id="colAlign-30">
</td>
<td id="colNistVal-30">Integrity (I) High</td>
<td id="colReason-30"></td>
</tr>
<tr id="wldRow32">
<td id="colCnaVal-31">Availability (A) High</td>
<td id="colAlign-31">
</td>
<td id="colNistVal-31">Availability (A) High</td>
<td id="colReason-31"></td>
</tr>
<tr id="wldRow33">
<td rowspan="8"
id="colCveId-32">
<a href="/vuln/detail/CVE-2022-46836"
id="cveDetailAnchor-32">CVE-2022-46836</a>
&nbsp;
<span>(5 of 8)</span>
</td>
<td id="colCnaVal-32">Attack Vector (AV) Network</td>
<td id="colAlign-32">
</td>
<td id="colNistVal-32">Attack Vector (AV) Network</td>
<td id="colReason-32"></td>
</tr>
<tr id="wldRow34">
<td id="colCnaVal-33">Attack Complexity (AC) Low</td>
<td id="colAlign-33">
</td>
<td id="colNistVal-33">Attack Complexity (AC) Low</td>
<td id="colReason-33"></td>
</tr>
<tr id="wldRow35">
<td id="colCnaVal-34">Privileges Required (PR) Low</td>
<td id="colAlign-34">
</td>
<td id="colNistVal-34">Privileges Required (PR) Low</td>
<td id="colReason-34"></td>
</tr>
<tr id="wldRow36">
<td id="colCnaVal-35">User Interaction (UI) None</td>
<td id="colAlign-35">
</td>
<td id="colNistVal-35">User Interaction (UI) None</td>
<td id="colReason-35"></td>
</tr>
<tr id="wldRow37">
<td id="colCnaVal-36" class="alert alert-warning">Scope (S) Changed</td>
<td id="colAlign-36" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-36" class="alert alert-warning">Scope (S) Unchanged</td>
<td id="colReason-36">Unclear if Scope change occurs. No identification of security boundaries being crossed.</td>
</tr>
<tr id="wldRow38">
<td id="colCnaVal-37">Confidentiality (C) High</td>
<td id="colAlign-37">
</td>
<td id="colNistVal-37">Confidentiality (C) High</td>
<td id="colReason-37"></td>
</tr>
<tr id="wldRow39">
<td id="colCnaVal-38" class="alert alert-warning">Integrity (I) Low</td>
<td id="colAlign-38" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-38" class="alert alert-warning">Integrity (I) High</td>
<td id="colReason-38">No limiting factors for integrity listed</td>
</tr>
<tr id="wldRow40">
<td id="colCnaVal-39" class="alert alert-warning">Availability (A) Low</td>
<td id="colAlign-39" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-39" class="alert alert-warning">Availability (A) High</td>
<td id="colReason-39">No limiting factors for availability listed</td>
</tr>
<tr id="wldRow41">
<td rowspan="8"
id="colCveId-40">
<a href="/vuln/detail/CVE-2022-47909"
id="cveDetailAnchor-40">CVE-2022-47909</a>
&nbsp;
<span>(3 of 8)</span>
</td>
<td id="colCnaVal-40">Attack Vector (AV) Local</td>
<td id="colAlign-40">
</td>
<td id="colNistVal-40">Attack Vector (AV) Local</td>
<td id="colReason-40"></td>
</tr>
<tr id="wldRow42">
<td id="colCnaVal-41">Attack Complexity (AC) Low</td>
<td id="colAlign-41">
</td>
<td id="colNistVal-41">Attack Complexity (AC) Low</td>
<td id="colReason-41"></td>
</tr>
<tr id="wldRow43">
<td id="colCnaVal-42" class="alert alert-warning">Privileges Required (PR) None</td>
<td id="colAlign-42" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-42" class="alert alert-warning">Privileges Required (PR) Low</td>
<td id="colReason-42">Local attacker typically implies some privilege level needed</td>
</tr>
<tr id="wldRow44">
<td id="colCnaVal-43">User Interaction (UI) None</td>
<td id="colAlign-43">
</td>
<td id="colNistVal-43">User Interaction (UI) None</td>
<td id="colReason-43"></td>
</tr>
<tr id="wldRow45">
<td id="colCnaVal-44" class="alert alert-warning">Scope (S) Changed</td>
<td id="colAlign-44" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-44" class="alert alert-warning">Scope (S) Unchanged</td>
<td id="colReason-44">Unclear if Scope change occurs. No identification of security boundaries being crossed.</td>
</tr>
<tr id="wldRow46">
<td id="colCnaVal-45" class="alert alert-warning">Confidentiality (C) Low</td>
<td id="colAlign-45" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-45" class="alert alert-warning">Confidentiality (C) High</td>
<td id="colReason-45">No limiting factors for confidentiality listed</td>
</tr>
<tr id="wldRow47">
<td id="colCnaVal-46" class="alert alert-warning">Integrity (I) Low</td>
<td id="colAlign-46" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-46" class="alert alert-warning">Integrity (I) High</td>
<td id="colReason-46">No limiting factors for integrity listed</td>
</tr>
<tr id="wldRow48">
<td id="colCnaVal-47" class="alert alert-warning">Availability (A) Low</td>
<td id="colAlign-47" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-47" class="alert alert-warning">Availability (A) High</td>
<td id="colReason-47">No limiting factors for availability listed</td>
</tr>
<tr id="wldRow49">
<td rowspan="8"
id="colCveId-48">
<a href="/vuln/detail/CVE-2022-48317"
id="cveDetailAnchor-48">CVE-2022-48317</a>
&nbsp;
<span>(4 of 8)</span>
</td>
<td id="colCnaVal-48">Attack Vector (AV) Network</td>
<td id="colAlign-48">
</td>
<td id="colNistVal-48">Attack Vector (AV) Network</td>
<td id="colReason-48"></td>
</tr>
<tr id="wldRow50">
<td id="colCnaVal-49" class="alert alert-warning">Attack Complexity (AC) High</td>
<td id="colAlign-49" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-49" class="alert alert-warning">Attack Complexity (AC) Low</td>
<td id="colReason-49">No Race Condition, implementation specific secrets required or MiTM identified for NVD analyst</td>
</tr>
<tr id="wldRow51">
<td id="colCnaVal-50">Privileges Required (PR) None</td>
<td id="colAlign-50">
</td>
<td id="colNistVal-50">Privileges Required (PR) None</td>
<td id="colReason-50"></td>
</tr>
<tr id="wldRow52">
<td id="colCnaVal-51">User Interaction (UI) None</td>
<td id="colAlign-51">
</td>
<td id="colNistVal-51">User Interaction (UI) None</td>
<td id="colReason-51"></td>
</tr>
<tr id="wldRow53">
<td id="colCnaVal-52">Scope (S) Unchanged</td>
<td id="colAlign-52">
</td>
<td id="colNistVal-52">Scope (S) Unchanged</td>
<td id="colReason-52"></td>
</tr>
<tr id="wldRow54">
<td id="colCnaVal-53" class="alert alert-warning">Confidentiality (C) Low</td>
<td id="colAlign-53" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-53" class="alert alert-warning">Confidentiality (C) High</td>
<td id="colReason-53">No limiting factors for confidentiality listed</td>
</tr>
<tr id="wldRow55">
<td id="colCnaVal-54" class="alert alert-warning">Integrity (I) Low</td>
<td id="colAlign-54" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-54" class="alert alert-warning">Integrity (I) High</td>
<td id="colReason-54">No limiting factors for integrity listed</td>
</tr>
<tr id="wldRow56">
<td id="colCnaVal-55" class="alert alert-warning">Availability (A) Low</td>
<td id="colAlign-55" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-55" class="alert alert-warning">Availability (A) High</td>
<td id="colReason-55">No limiting factors for availability listed</td>
</tr>
<tr id="wldRow57">
<td rowspan="8"
id="colCveId-56">
<a href="/vuln/detail/CVE-2022-48318"
id="cveDetailAnchor-56">CVE-2022-48318</a>
&nbsp;
<span>(8 of 8)</span>
</td>
<td id="colCnaVal-56">Attack Vector (AV) Network</td>
<td id="colAlign-56">
</td>
<td id="colNistVal-56">Attack Vector (AV) Network</td>
<td id="colReason-56"></td>
</tr>
<tr id="wldRow58">
<td id="colCnaVal-57">Attack Complexity (AC) Low</td>
<td id="colAlign-57">
</td>
<td id="colNistVal-57">Attack Complexity (AC) Low</td>
<td id="colReason-57"></td>
</tr>
<tr id="wldRow59">
<td id="colCnaVal-58">Privileges Required (PR) None</td>
<td id="colAlign-58">
</td>
<td id="colNistVal-58">Privileges Required (PR) None</td>
<td id="colReason-58"></td>
</tr>
<tr id="wldRow60">
<td id="colCnaVal-59">User Interaction (UI) None</td>
<td id="colAlign-59">
</td>
<td id="colNistVal-59">User Interaction (UI) None</td>
<td id="colReason-59"></td>
</tr>
<tr id="wldRow61">
<td id="colCnaVal-60">Scope (S) Unchanged</td>
<td id="colAlign-60">
</td>
<td id="colNistVal-60">Scope (S) Unchanged</td>
<td id="colReason-60"></td>
</tr>
<tr id="wldRow62">
<td id="colCnaVal-61">Confidentiality (C) Low</td>
<td id="colAlign-61">
</td>
<td id="colNistVal-61">Confidentiality (C) Low</td>
<td id="colReason-61"></td>
</tr>
<tr id="wldRow63">
<td id="colCnaVal-62">Integrity (I) None</td>
<td id="colAlign-62">
</td>
<td id="colNistVal-62">Integrity (I) None</td>
<td id="colReason-62"></td>
</tr>
<tr id="wldRow64">
<td id="colCnaVal-63">Availability (A) None</td>
<td id="colAlign-63">
</td>
<td id="colNistVal-63">Availability (A) None</td>
<td id="colReason-63"></td>
</tr>
<tr id="wldRow65">
<td rowspan="8"
id="colCveId-64">
<a href="/vuln/detail/CVE-2022-48319"
id="cveDetailAnchor-64">CVE-2022-48319</a>
&nbsp;
<span>(7 of 8)</span>
</td>
<td id="colCnaVal-64">Attack Vector (AV) Local</td>
<td id="colAlign-64">
</td>
<td id="colNistVal-64">Attack Vector (AV) Local</td>
<td id="colReason-64"></td>
</tr>
<tr id="wldRow66">
<td id="colCnaVal-65">Attack Complexity (AC) Low</td>
<td id="colAlign-65">
</td>
<td id="colNistVal-65">Attack Complexity (AC) Low</td>
<td id="colReason-65"></td>
</tr>
<tr id="wldRow67">
<td id="colCnaVal-66">Privileges Required (PR) Low</td>
<td id="colAlign-66">
</td>
<td id="colNistVal-66">Privileges Required (PR) Low</td>
<td id="colReason-66"></td>
</tr>
<tr id="wldRow68">
<td id="colCnaVal-67">User Interaction (UI) None</td>
<td id="colAlign-67">
</td>
<td id="colNistVal-67">User Interaction (UI) None</td>
<td id="colReason-67"></td>
</tr>
<tr id="wldRow69">
<td id="colCnaVal-68" class="alert alert-warning">Scope (S) Changed</td>
<td id="colAlign-68" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-68" class="alert alert-warning">Scope (S) Unchanged</td>
<td id="colReason-68">Unclear if Scope change occurs. No identification of security boundaries being crossed.</td>
</tr>
<tr id="wldRow70">
<td id="colCnaVal-69">Confidentiality (C) High</td>
<td id="colAlign-69">
</td>
<td id="colNistVal-69">Confidentiality (C) High</td>
<td id="colReason-69"></td>
</tr>
<tr id="wldRow71">
<td id="colCnaVal-70">Integrity (I) None</td>
<td id="colAlign-70">
</td>
<td id="colNistVal-70">Integrity (I) None</td>
<td id="colReason-70"></td>
</tr>
<tr id="wldRow72">
<td id="colCnaVal-71">Availability (A) None</td>
<td id="colAlign-71">
</td>
<td id="colNistVal-71">Availability (A) None</td>
<td id="colReason-71"></td>
</tr>
<tr id="wldRow73">
<td rowspan="8"
id="colCveId-72">
<a href="/vuln/detail/CVE-2022-48320"
id="cveDetailAnchor-72">CVE-2022-48320</a>
&nbsp;
<span>(7 of 8)</span>
</td>
<td id="colCnaVal-72">Attack Vector (AV) Network</td>
<td id="colAlign-72">
</td>
<td id="colNistVal-72">Attack Vector (AV) Network</td>
<td id="colReason-72"></td>
</tr>
<tr id="wldRow74">
<td id="colCnaVal-73">Attack Complexity (AC) Low</td>
<td id="colAlign-73">
</td>
<td id="colNistVal-73">Attack Complexity (AC) Low</td>
<td id="colReason-73"></td>
</tr>
<tr id="wldRow75">
<td id="colCnaVal-74">Privileges Required (PR) None</td>
<td id="colAlign-74">
</td>
<td id="colNistVal-74">Privileges Required (PR) None</td>
<td id="colReason-74"></td>
</tr>
<tr id="wldRow76">
<td id="colCnaVal-75">User Interaction (UI) Required</td>
<td id="colAlign-75">
</td>
<td id="colNistVal-75">User Interaction (UI) Required</td>
<td id="colReason-75"></td>
</tr>
<tr id="wldRow77">
<td id="colCnaVal-76">Scope (S) Unchanged</td>
<td id="colAlign-76">
</td>
<td id="colNistVal-76">Scope (S) Unchanged</td>
<td id="colReason-76"></td>
</tr>
<tr id="wldRow78">
<td id="colCnaVal-77">Confidentiality (C) None</td>
<td id="colAlign-77">
</td>
<td id="colNistVal-77">Confidentiality (C) None</td>
<td id="colReason-77"></td>
</tr>
<tr id="wldRow79">
<td id="colCnaVal-78">Integrity (I) Low</td>
<td id="colAlign-78">
</td>
<td id="colNistVal-78">Integrity (I) Low</td>
<td id="colReason-78"></td>
</tr>
<tr id="wldRow80">
<td id="colCnaVal-79" class="alert alert-warning">Availability (A) Low</td>
<td id="colAlign-79" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-79" class="alert alert-warning">Availability (A) None</td>
<td id="colReason-79">Does not result in total loss of availability</td>
</tr>
<tr id="wldRow81">
<td rowspan="8"
id="colCveId-80">
<a href="/vuln/detail/CVE-2022-48321"
id="cveDetailAnchor-80">CVE-2022-48321</a>
&nbsp;
<span>(3 of 8)</span>
</td>
<td id="colCnaVal-80">Attack Vector (AV) Local</td>
<td id="colAlign-80">
</td>
<td id="colNistVal-80">Attack Vector (AV) Local</td>
<td id="colReason-80"></td>
</tr>
<tr id="wldRow82">
<td id="colCnaVal-81">Attack Complexity (AC) Low</td>
<td id="colAlign-81">
</td>
<td id="colNistVal-81">Attack Complexity (AC) Low</td>
<td id="colReason-81"></td>
</tr>
<tr id="wldRow83">
<td id="colCnaVal-82" class="alert alert-warning">Privileges Required (PR) None</td>
<td id="colAlign-82" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-82" class="alert alert-warning">Privileges Required (PR) Low</td>
<td id="colReason-82">Attacker as &quot;user&quot; is mentioned, but not identified as high privileges</td>
</tr>
<tr id="wldRow84">
<td id="colCnaVal-83">User Interaction (UI) None</td>
<td id="colAlign-83">
</td>
<td id="colNistVal-83">User Interaction (UI) None</td>
<td id="colReason-83"></td>
</tr>
<tr id="wldRow85">
<td id="colCnaVal-84" class="alert alert-warning">Scope (S) Changed</td>
<td id="colAlign-84" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-84" class="alert alert-warning">Scope (S) Unchanged</td>
<td id="colReason-84">Unclear if Scope change occurs. No identification of security boundaries being crossed.</td>
</tr>
<tr id="wldRow86">
<td id="colCnaVal-85" class="alert alert-warning">Confidentiality (C) Low</td>
<td id="colAlign-85" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-85" class="alert alert-warning">Confidentiality (C) High</td>
<td id="colReason-85">No limiting factors for confidentiality listed</td>
</tr>
<tr id="wldRow87">
<td id="colCnaVal-86" class="alert alert-warning">Integrity (I) Low</td>
<td id="colAlign-86" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-86" class="alert alert-warning">Integrity (I) High</td>
<td id="colReason-86">No limiting factors for integrity listed</td>
</tr>
<tr id="wldRow88">
<td id="colCnaVal-87" class="alert alert-warning">Availability (A) Low</td>
<td id="colAlign-87" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-87" class="alert alert-warning">Availability (A) High</td>
<td id="colReason-87">No limiting factors for availability listed</td>
</tr>
<tr id="wldRow89">
<td rowspan="8"
id="colCveId-88">
<a href="/vuln/detail/CVE-2023-0284"
id="cveDetailAnchor-88">CVE-2023-0284</a>
&nbsp;
<span>(7 of 8)</span>
</td>
<td id="colCnaVal-88">Attack Vector (AV) Network</td>
<td id="colAlign-88">
</td>
<td id="colNistVal-88">Attack Vector (AV) Network</td>
<td id="colReason-88"></td>
</tr>
<tr id="wldRow90">
<td id="colCnaVal-89" class="alert alert-warning">Attack Complexity (AC) High</td>
<td id="colAlign-89" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-89" class="alert alert-warning">Attack Complexity (AC) Low</td>
<td id="colReason-89">No Race Condition, implementation specific secrets required or MiTM identified for NVD analyst</td>
</tr>
<tr id="wldRow91">
<td id="colCnaVal-90">Privileges Required (PR) Low</td>
<td id="colAlign-90">
</td>
<td id="colNistVal-90">Privileges Required (PR) Low</td>
<td id="colReason-90"></td>
</tr>
<tr id="wldRow92">
<td id="colCnaVal-91">User Interaction (UI) None</td>
<td id="colAlign-91">
</td>
<td id="colNistVal-91">User Interaction (UI) None</td>
<td id="colReason-91"></td>
</tr>
<tr id="wldRow93">
<td id="colCnaVal-92">Scope (S) Unchanged</td>
<td id="colAlign-92">
</td>
<td id="colNistVal-92">Scope (S) Unchanged</td>
<td id="colReason-92"></td>
</tr>
<tr id="wldRow94">
<td id="colCnaVal-93">Confidentiality (C) None</td>
<td id="colAlign-93">
</td>
<td id="colNistVal-93">Confidentiality (C) None</td>
<td id="colReason-93"></td>
</tr>
<tr id="wldRow95">
<td id="colCnaVal-94">Integrity (I) High</td>
<td id="colAlign-94">
</td>
<td id="colNistVal-94">Integrity (I) High</td>
<td id="colReason-94"></td>
</tr>
<tr id="wldRow96">
<td id="colCnaVal-95">Availability (A) High</td>
<td id="colAlign-95">
</td>
<td id="colNistVal-95">Availability (A) High</td>
<td id="colReason-95"></td>
</tr>
<tr id="wldRow97">
<td rowspan="8"
id="colCveId-96">
<a href="/vuln/detail/CVE-2023-1768"
id="cveDetailAnchor-96">CVE-2023-1768</a>
&nbsp;
<span>(7 of 8)</span>
</td>
<td id="colCnaVal-96">Attack Vector (AV) Network</td>
<td id="colAlign-96">
</td>
<td id="colNistVal-96">Attack Vector (AV) Network</td>
<td id="colReason-96"></td>
</tr>
<tr id="wldRow98">
<td id="colCnaVal-97" class="alert alert-warning">Attack Complexity (AC) High</td>
<td id="colAlign-97" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-97" class="alert alert-warning">Attack Complexity (AC) Low</td>
<td id="colReason-97">No Race Condition, implementation specific secrets required or MiTM identified for NVD analyst</td>
</tr>
<tr id="wldRow99">
<td id="colCnaVal-98">Privileges Required (PR) None</td>
<td id="colAlign-98">
</td>
<td id="colNistVal-98">Privileges Required (PR) None</td>
<td id="colReason-98"></td>
</tr>
<tr id="wldRow100">
<td id="colCnaVal-99">User Interaction (UI) None</td>
<td id="colAlign-99">
</td>
<td id="colNistVal-99">User Interaction (UI) None</td>
<td id="colReason-99"></td>
</tr>
<tr id="wldRow101">
<td id="colCnaVal-100">Scope (S) Unchanged</td>
<td id="colAlign-100">
</td>
<td id="colNistVal-100">Scope (S) Unchanged</td>
<td id="colReason-100"></td>
</tr>
<tr id="wldRow102">
<td id="colCnaVal-101">Confidentiality (C) Low</td>
<td id="colAlign-101">
</td>
<td id="colNistVal-101">Confidentiality (C) Low</td>
<td id="colReason-101"></td>
</tr>
<tr id="wldRow103">
<td id="colCnaVal-102">Integrity (I) None</td>
<td id="colAlign-102">
</td>
<td id="colNistVal-102">Integrity (I) None</td>
<td id="colReason-102"></td>
</tr>
<tr id="wldRow104">
<td id="colCnaVal-103">Availability (A) None</td>
<td id="colAlign-103">
</td>
<td id="colNistVal-103">Availability (A) None</td>
<td id="colReason-103"></td>
</tr>
<tr id="wldRow105">
<td rowspan="8"
id="colCveId-104">
<a href="/vuln/detail/CVE-2023-2020"
id="cveDetailAnchor-104">CVE-2023-2020</a>
&nbsp;
<span>(8 of 8)</span>
</td>
<td id="colCnaVal-104">Attack Vector (AV) Network</td>
<td id="colAlign-104">
</td>
<td id="colNistVal-104">Attack Vector (AV) Network</td>
<td id="colReason-104"></td>
</tr>
<tr id="wldRow106">
<td id="colCnaVal-105">Attack Complexity (AC) Low</td>
<td id="colAlign-105">
</td>
<td id="colNistVal-105">Attack Complexity (AC) Low</td>
<td id="colReason-105"></td>
</tr>
<tr id="wldRow107">
<td id="colCnaVal-106">Privileges Required (PR) Low</td>
<td id="colAlign-106">
</td>
<td id="colNistVal-106">Privileges Required (PR) Low</td>
<td id="colReason-106"></td>
</tr>
<tr id="wldRow108">
<td id="colCnaVal-107">User Interaction (UI) None</td>
<td id="colAlign-107">
</td>
<td id="colNistVal-107">User Interaction (UI) None</td>
<td id="colReason-107"></td>
</tr>
<tr id="wldRow109">
<td id="colCnaVal-108">Scope (S) Unchanged</td>
<td id="colAlign-108">
</td>
<td id="colNistVal-108">Scope (S) Unchanged</td>
<td id="colReason-108"></td>
</tr>
<tr id="wldRow110">
<td id="colCnaVal-109">Confidentiality (C) None</td>
<td id="colAlign-109">
</td>
<td id="colNistVal-109">Confidentiality (C) None</td>
<td id="colReason-109"></td>
</tr>
<tr id="wldRow111">
<td id="colCnaVal-110">Integrity (I) Low</td>
<td id="colAlign-110">
</td>
<td id="colNistVal-110">Integrity (I) Low</td>
<td id="colReason-110"></td>
</tr>
<tr id="wldRow112">
<td id="colCnaVal-111">Availability (A) None</td>
<td id="colAlign-111">
</td>
<td id="colNistVal-111">Availability (A) None</td>
<td id="colReason-111"></td>
</tr>
<tr id="wldRow113">
<td rowspan="8"
id="colCveId-112">
<a href="/vuln/detail/CVE-2023-22288"
id="cveDetailAnchor-112">CVE-2023-22288</a>
&nbsp;
<span>(7 of 8)</span>
</td>
<td id="colCnaVal-112">Attack Vector (AV) Network</td>
<td id="colAlign-112">
</td>
<td id="colNistVal-112">Attack Vector (AV) Network</td>
<td id="colReason-112"></td>
</tr>
<tr id="wldRow114">
<td id="colCnaVal-113">Attack Complexity (AC) Low</td>
<td id="colAlign-113">
</td>
<td id="colNistVal-113">Attack Complexity (AC) Low</td>
<td id="colReason-113"></td>
</tr>
<tr id="wldRow115">
<td id="colCnaVal-114">Privileges Required (PR) Low</td>
<td id="colAlign-114">
</td>
<td id="colNistVal-114">Privileges Required (PR) Low</td>
<td id="colReason-114"></td>
</tr>
<tr id="wldRow116">
<td id="colCnaVal-115">User Interaction (UI) Required</td>
<td id="colAlign-115">
</td>
<td id="colNistVal-115">User Interaction (UI) Required</td>
<td id="colReason-115"></td>
</tr>
<tr id="wldRow117">
<td id="colCnaVal-116">Scope (S) Changed</td>
<td id="colAlign-116">
</td>
<td id="colNistVal-116">Scope (S) Changed</td>
<td id="colReason-116"></td>
</tr>
<tr id="wldRow118">
<td id="colCnaVal-117">Confidentiality (C) Low</td>
<td id="colAlign-117">
</td>
<td id="colNistVal-117">Confidentiality (C) Low</td>
<td id="colReason-117"></td>
</tr>
<tr id="wldRow119">
<td id="colCnaVal-118" class="alert alert-warning">Integrity (I) None</td>
<td id="colAlign-118" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-118" class="alert alert-warning">Integrity (I) Low</td>
<td id="colReason-118">No limiting factors for integrity listed</td>
</tr>
<tr id="wldRow120">
<td id="colCnaVal-119">Availability (A) None</td>
<td id="colAlign-119">
</td>
<td id="colNistVal-119">Availability (A) None</td>
<td id="colReason-119"></td>
</tr>
<tr id="wldRow121">
<td rowspan="8"
id="colCveId-120">
<a href="/vuln/detail/CVE-2023-22294"
id="cveDetailAnchor-120">CVE-2023-22294</a>
&nbsp;
<span>(8 of 8)</span>
</td>
<td id="colCnaVal-120">Attack Vector (AV) Network</td>
<td id="colAlign-120">
</td>
<td id="colNistVal-120">Attack Vector (AV) Network</td>
<td id="colReason-120"></td>
</tr>
<tr id="wldRow122">
<td id="colCnaVal-121">Attack Complexity (AC) Low</td>
<td id="colAlign-121">
</td>
<td id="colNistVal-121">Attack Complexity (AC) Low</td>
<td id="colReason-121"></td>
</tr>
<tr id="wldRow123">
<td id="colCnaVal-122">Privileges Required (PR) Low</td>
<td id="colAlign-122">
</td>
<td id="colNistVal-122">Privileges Required (PR) Low</td>
<td id="colReason-122"></td>
</tr>
<tr id="wldRow124">
<td id="colCnaVal-123">User Interaction (UI) None</td>
<td id="colAlign-123">
</td>
<td id="colNistVal-123">User Interaction (UI) None</td>
<td id="colReason-123"></td>
</tr>
<tr id="wldRow125">
<td id="colCnaVal-124">Scope (S) Unchanged</td>
<td id="colAlign-124">
</td>
<td id="colNistVal-124">Scope (S) Unchanged</td>
<td id="colReason-124"></td>
</tr>
<tr id="wldRow126">
<td id="colCnaVal-125">Confidentiality (C) High</td>
<td id="colAlign-125">
</td>
<td id="colNistVal-125">Confidentiality (C) High</td>
<td id="colReason-125"></td>
</tr>
<tr id="wldRow127">
<td id="colCnaVal-126">Integrity (I) High</td>
<td id="colAlign-126">
</td>
<td id="colNistVal-126">Integrity (I) High</td>
<td id="colReason-126"></td>
</tr>
<tr id="wldRow128">
<td id="colCnaVal-127">Availability (A) High</td>
<td id="colAlign-127">
</td>
<td id="colNistVal-127">Availability (A) High</td>
<td id="colReason-127"></td>
</tr>
<tr id="wldRow129">
<td rowspan="8"
id="colCveId-128">
<a href="/vuln/detail/CVE-2023-22307"
id="cveDetailAnchor-128">CVE-2023-22307</a>
&nbsp;
<span>(8 of 8)</span>
</td>
<td id="colCnaVal-128">Attack Vector (AV) Local</td>
<td id="colAlign-128">
</td>
<td id="colNistVal-128">Attack Vector (AV) Local</td>
<td id="colReason-128"></td>
</tr>
<tr id="wldRow130">
<td id="colCnaVal-129">Attack Complexity (AC) Low</td>
<td id="colAlign-129">
</td>
<td id="colNistVal-129">Attack Complexity (AC) Low</td>
<td id="colReason-129"></td>
</tr>
<tr id="wldRow131">
<td id="colCnaVal-130">Privileges Required (PR) Low</td>
<td id="colAlign-130">
</td>
<td id="colNistVal-130">Privileges Required (PR) Low</td>
<td id="colReason-130"></td>
</tr>
<tr id="wldRow132">
<td id="colCnaVal-131">User Interaction (UI) None</td>
<td id="colAlign-131">
</td>
<td id="colNistVal-131">User Interaction (UI) None</td>
<td id="colReason-131"></td>
</tr>
<tr id="wldRow133">
<td id="colCnaVal-132">Scope (S) Unchanged</td>
<td id="colAlign-132">
</td>
<td id="colNistVal-132">Scope (S) Unchanged</td>
<td id="colReason-132"></td>
</tr>
<tr id="wldRow134">
<td id="colCnaVal-133">Confidentiality (C) High</td>
<td id="colAlign-133">
</td>
<td id="colNistVal-133">Confidentiality (C) High</td>
<td id="colReason-133"></td>
</tr>
<tr id="wldRow135">
<td id="colCnaVal-134">Integrity (I) None</td>
<td id="colAlign-134">
</td>
<td id="colNistVal-134">Integrity (I) None</td>
<td id="colReason-134"></td>
</tr>
<tr id="wldRow136">
<td id="colCnaVal-135">Availability (A) None</td>
<td id="colAlign-135">
</td>
<td id="colNistVal-135">Availability (A) None</td>
<td id="colReason-135"></td>
</tr>
<tr id="wldRow137">
<td rowspan="8"
id="colCveId-136">
<a href="/vuln/detail/CVE-2023-22309"
id="cveDetailAnchor-136">CVE-2023-22309</a>
&nbsp;
<span>(8 of 8)</span>
</td>
<td id="colCnaVal-136">Attack Vector (AV) Network</td>
<td id="colAlign-136">
</td>
<td id="colNistVal-136">Attack Vector (AV) Network</td>
<td id="colReason-136"></td>
</tr>
<tr id="wldRow138">
<td id="colCnaVal-137">Attack Complexity (AC) Low</td>
<td id="colAlign-137">
</td>
<td id="colNistVal-137">Attack Complexity (AC) Low</td>
<td id="colReason-137"></td>
</tr>
<tr id="wldRow139">
<td id="colCnaVal-138">Privileges Required (PR) None</td>
<td id="colAlign-138">
</td>
<td id="colNistVal-138">Privileges Required (PR) None</td>
<td id="colReason-138"></td>
</tr>
<tr id="wldRow140">
<td id="colCnaVal-139">User Interaction (UI) Required</td>
<td id="colAlign-139">
</td>
<td id="colNistVal-139">User Interaction (UI) Required</td>
<td id="colReason-139"></td>
</tr>
<tr id="wldRow141">
<td id="colCnaVal-140">Scope (S) Changed</td>
<td id="colAlign-140">
</td>
<td id="colNistVal-140">Scope (S) Changed</td>
<td id="colReason-140"></td>
</tr>
<tr id="wldRow142">
<td id="colCnaVal-141">Confidentiality (C) Low</td>
<td id="colAlign-141">
</td>
<td id="colNistVal-141">Confidentiality (C) Low</td>
<td id="colReason-141"></td>
</tr>
<tr id="wldRow143">
<td id="colCnaVal-142">Integrity (I) Low</td>
<td id="colAlign-142">
</td>
<td id="colNistVal-142">Integrity (I) Low</td>
<td id="colReason-142"></td>
</tr>
<tr id="wldRow144">
<td id="colCnaVal-143">Availability (A) None</td>
<td id="colAlign-143">
</td>
<td id="colNistVal-143">Availability (A) None</td>
<td id="colReason-143"></td>
</tr>
<tr id="wldRow145">
<td rowspan="8"
id="colCveId-144">
<a href="/vuln/detail/CVE-2023-31207"
id="cveDetailAnchor-144">CVE-2023-31207</a>
&nbsp;
<span>(7 of 8)</span>
</td>
<td id="colCnaVal-144">Attack Vector (AV) Local</td>
<td id="colAlign-144">
</td>
<td id="colNistVal-144">Attack Vector (AV) Local</td>
<td id="colReason-144"></td>
</tr>
<tr id="wldRow146">
<td id="colCnaVal-145">Attack Complexity (AC) Low</td>
<td id="colAlign-145">
</td>
<td id="colNistVal-145">Attack Complexity (AC) Low</td>
<td id="colReason-145"></td>
</tr>
<tr id="wldRow147">
<td id="colCnaVal-146" class="alert alert-warning">Privileges Required (PR) High</td>
<td id="colAlign-146" class="alert alert-warning">
<span>&ne;</span>
</td>
<td id="colNistVal-146" class="alert alert-warning">Privileges Required (PR) Low</td>
<td id="colReason-146">Privilege level not clearly identified to qualify as HIGH (typically &quot;root&quot; or &quot;administrator&quot;)</td>
</tr>
<tr id="wldRow148">
<td id="colCnaVal-147">User Interaction (UI) None</td>
<td id="colAlign-147">
</td>
<td id="colNistVal-147">User Interaction (UI) None</td>
<td id="colReason-147"></td>
</tr>
<tr id="wldRow149">
<td id="colCnaVal-148">Scope (S) Unchanged</td>
<td id="colAlign-148">
</td>
<td id="colNistVal-148">Scope (S) Unchanged</td>
<td id="colReason-148"></td>
</tr>
<tr id="wldRow150">
<td id="colCnaVal-149">Confidentiality (C) High</td>
<td id="colAlign-149">
</td>
<td id="colNistVal-149">Confidentiality (C) High</td>
<td id="colReason-149"></td>
</tr>
<tr id="wldRow151">
<td id="colCnaVal-150">Integrity (I) None</td>
<td id="colAlign-150">
</td>
<td id="colNistVal-150">Integrity (I) None</td>
<td id="colReason-150"></td>
</tr>
<tr id="wldRow152">
<td id="colCnaVal-151">Availability (A) None</td>
<td id="colAlign-151">
</td>
<td id="colNistVal-151">Availability (A) None</td>
<td id="colReason-151"></td>
</tr>
</tbody>
</table>
</div>
</div>
</div>
</div>
</main>
<footer id="footer" role="contentinfo">
<div class="container">
<div class="row">
<div class="col-sm-12">
<ul class="social-list pull-right">
<li class="field-item service-twitter list-horiz"><a
href="https://twitter.com/NISTCyber" target="_blank" rel="noopener noreferrer"
class="social-btn social-btn--large extlink ext"> <i
class="fa fa-twitter fa-fw"><span class="element-invisible">twitter</span></i><span
class="ext"><span class="element-invisible"> (link
is external)</span></span>
</a></li>
<li class="field-item service-facebook list-horiz"><a
href="https://www.facebook.com/NIST" target="_blank" rel="noopener noreferrer"
class="social-btn social-btn--large extlink ext"> <i
class="fa fa-facebook fa-fw"><span class="element-invisible">facebook</span></i><span
class="ext"><span class="element-invisible"> (link
is external)</span></span></a></li>
<li class="field-item service-linkedin list-horiz"><a
href="https://www.linkedin.com/company/nist" target="_blank" rel="noopener noreferrer"
class="social-btn social-btn--large extlink ext"> <i
class="fa fa-linkedin fa-fw"><span class="element-invisible">linkedin</span></i><span
class="ext"><span class="element-invisible"> (link
is external)</span></span></a></li>
<li class="field-item service-youtube list-horiz"><a
href="https://www.youtube.com/user/USNISTGOV" target="_blank" rel="noopener noreferrer"
class="social-btn social-btn--large extlink ext"> <i
class="fa fa-youtube fa-fw"><span class="element-invisible">youtube</span></i><span
class="ext"><span class="element-invisible"> (link
is external)</span></span></a></li>
<li class="field-item service-rss list-horiz"><a
href="https://www.nist.gov/news-events/nist-rss-feeds"
target="_blank" rel="noopener noreferrer" class="social-btn social-btn--large extlink">
<i class="fa fa-rss fa-fw"><span class="element-invisible">rss</span></i>
</a></li>
<li class="field-item service-govdelivery list-horiz last"><a
href="https://public.govdelivery.com/accounts/USNIST/subscriber/new?qsp=USNIST_3"
target="_blank" rel="noopener noreferrer" class="social-btn social-btn--large extlink ext">
<i class="fa fa-envelope fa-fw"><span
class="element-invisible">govdelivery</span></i><span class="ext"><span
class="element-invisible"> (link is external)</span></span>
</a></li>
</ul>
<span class="hidden-xs"> <a
title="National Institute of Standards and Technology" rel="home"
class="footer-nist-logo"> <img
src="/site-media/images/nist/nist-logo.png"
alt="National Institute of Standards and Technology logo" />
</a>
</span>
</div>
</div>
<div class="row hidden-sm hidden-md hidden-lg">
<div class="col-sm-12">
<a href="https://www.nist.gov"
title="National Institute of Standards and Technology" rel="home"
target="_blank" rel="noopener noreferrer" class="footer-nist-logo"> <img
src="/site-media/images/nist/nist-logo.png"
alt="National Institute of Standards and Technology logo" />
</a>
</div>
</div>
<div class="row footer-contact-container">
<div class="col-sm-6">
<strong>HEADQUARTERS</strong>
<br>
100 Bureau Drive
<br>
Gaithersburg, MD 20899
<br>
<a href="tel:301-975-2000">(301) 975-2000</a>
<br>
<br>
<a href="mailto:nvd@nist.gov">Webmaster</a> | <a
href="https://www.nist.gov/about-nist/contact-us">Contact Us</a>
| <a href="https://www.nist.gov/about-nist/visit"
style="display: inline-block;">Our Other Offices</a>
</div>
<div class="col-sm-6">
<div class="pull-right"
style="text-align:right">
<strong>Incident Response Assistance and Non-NVD Related<br>Technical Cyber Security Questions:</strong>
<br>
US-CERT Security Operations Center
<br> Email: <a href="mailto:soc@us-cert.gov">soc@us-cert.gov</a>
<br> Phone: 1-888-282-0870
</div>
</div>
</div>
<div class="row">
<nav title="Footer Navigation" role="navigation"
class="row footer-bottom-links-container">
<!-- https://github.com/usnistgov/nist-header-footer/blob/nist-pages/boilerplate-footer.html -->
<p>
<a href="https://www.nist.gov/oism/site-privacy">Site Privacy</a>
|
<a href="https://www.nist.gov/oism/accessibility">Accessibility</a>
|
<a href="https://www.nist.gov/privacy">Privacy Program</a>
|
<a href="https://www.nist.gov/oism/copyrights">Copyrights</a>
|
<a href="https://www.commerce.gov/vulnerability-disclosure-policy">Vulnerability Disclosure</a>
|
<a href="https://www.nist.gov/no-fear-act-policy">No Fear Act Policy</a>
|
<a href="https://www.nist.gov/foia">FOIA</a>
|
<a href="https://www.nist.gov/environmental-policy-statement">Environmental Policy</a>
|
<a href="https://www.nist.gov/summary-report-scientific-integrity">Scientific Integrity</a>
|
<a href="https://www.nist.gov/nist-information-quality-standards">Information Quality Standards</a>
|
<a href="https://www.commerce.gov/">Commerce.gov</a>
|
<a href="https://www.science.gov/">Science.gov</a>
|
<a href="https://www.usa.gov/">USA.gov</a>
</p>
</nav>
</div>
</div>
</footer>
</body>
</html>