Vulnerability Details CVE-2022-41157
A specific file on the sERP server if Kyungrinara(ERP solution) has a fixed password with the SYSTEM authority. This vulnerability could allow attackers to leak or steal sensitive information or execute malicious commands.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.5%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2022-41157
-
cpe:2.3:a:webcash:serp_server_2.0:-
-
cpe:2.3:o:microsoft:windows:-