← back
CVE-2022-0074highobserved exploitationCWE-426

Privilege Escalation in OpenLiteSpeed Web Server

43Vexday Risk Score

Prioritize patching. It exploitation observed by VulnCheck.

ssvc Actcvss 8.8epss 1.2%
from disclosure to weapon
Published on NVDOct 27
VulnCheck+874d
exploitation probability
1.2%top 36% of all CVEs
observed exploitation
yesVulnCheck
Untrusted Search Path vulnerability in LiteSpeed Technologies OpenLiteSpeed Web Server and LiteSpeed Web Server Container allows Privilege Escalation. This affects versions from 1.6.15 before 1.7.16.1.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H