Skip to main content
AppSec Tools
Vulnerabilities Library
About DevHub
DevWorkshops
AppSec Tools
Vulnerabilities Library
About DevHub
DevWorkshops
CVE-2022-45872
Severity
High
Score
9.8/10
Summary
iTerm2 before 3.4.18 mishandles a DECRQSS response.
Attack Complexity:
LOW
Attack Vector:
NETWORK
Integrity Impact:
HIGH
Scope:
UNCHANGED
User Interaction:
NONE
Privileges Required:
NONE
Confidentiality Impact:
HIGH
Availability Impact:
HIGH
References
Advisory Timeline
Published
Nov 23, 2022