CyberICT

CVE-2022-23748

Audinate · Published November 17, 2022

CVSS v3.1

HIGH
Patch availableGet patch

Description

mDNSResponder.exe is vulnerable to DLL Sideloading attack. Executable improperly specifies how to load the DLL, from which folder and under what conditions. In these scenarios, a malicious attacker could be using the valid and legitimate executable to load malicious files.

Affected Products

  • Dante Application Library <= 1.2.0

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H