Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

CVE-2022-28944

EPSS 10.87% · P93
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-28944

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Certain EMCO Software products are affected by: CWE-494: Download of Code Without Integrity Check. This affects MSI Package Builder for Windows 9.1.4 and Remote Installer for Windows 6.0.13 and Ping Monitor for Windows 8.0.18 and Remote Shutdown for Windows 7.2.2 and WakeOnLan 2.0.8 and Network Inventory for Windows 5.8.22 and Network Software Scanner for Windows 2.0.8 and UnLock IT for Windows 6.1.1. The impact is: execute arbitrary code (remote). The component is: Updater. The attack vector is: To exploit this vulnerability, a user must trigger an update of an affected installation of EMCO Software. ¶¶ Multiple products from EMCO Software are affected by a remote code execution vulnerability during the update process.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款EMCO Software产品安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
EMCO Software EMCO MSI Package Builder for Windows等都是冰岛EMCO Software公司的产品。EMCO Software EMCO MSI Package Builder for Windows是一种用于创建 Windows Installer 程序包的软件工具。EMCO Software EMCO Remote Shutdown for Windows是一种用于网络的 PC 电源管理工具。EMCO Software EMCO Remote Insta
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2022-28944

#POC DescriptionSource LinkShenlong Link
1Nonehttps://github.com/gerr-re/cve-2022-28944POC Details
2Nonehttps://github.com/gar-re/cve-2022-28944POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-28944

登录查看更多情报信息。

Other References for CVE-2022-28944 (2)

Same Patch Batch · n/a · 2022-05-23 · 22 CVEs total

CVE-2022-314667.9 HIGHTOCTOU Vulnerability in Quick Heal Total Security
CVE-2022-314677.9 HIGHDLL Hijacking Vulnerability in Quick Heal Total Security
CVE-2021-417147.7 HIGHTipask 安全漏洞
CVE-2022-30016Rescue Dispatch Management System 访问控制错误漏洞
CVE-2021-42585GNU LibreDWG 缓冲区错误漏洞
CVE-2021-42586GNU LibreDWG 缓冲区错误漏洞
CVE-2022-28997CSZCMS 代码问题漏洞
CVE-2022-28998Xlight FTP 缓冲区错误漏洞
CVE-2022-29005Online Birth Certificate System 跨站脚本漏洞
CVE-2022-29004Diary Management System 跨站脚本漏洞
CVE-2022-30014Lumidek Associates Simple Food Website 跨站请求伪造漏洞
CVE-2022-28932D-Link DSL-G2452DG 安全漏洞
CVE-2022-30017Rescue Dispatch Management System 跨站脚本漏洞
CVE-2022-29002XXL-JOB 跨站请求伪造漏洞
CVE-2021-42233Wondercms plugin Simple Blog 跨站脚本漏洞
CVE-2022-31489Inout Blockchain AltExchanger SQL注入漏洞
CVE-2022-31488Nesote Technologies Inout Blockchain AltExchanger SQL注入漏洞
CVE-2022-31487多款Inout Blockchain产品SQL注入漏洞
CVE-2022-28999Embarcadero Technologies Dev-CPP 安全漏洞
CVE-2022-29376XAMPP 安全漏洞

Showing top 20 of 22 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2022-28944

Anonymous User
2026-03-05 23:50:37

<a href=https://mobilityspecialists.net>https://mobilityspecialists.net</a>


Leave a comment