← Back to browse · API

CVE-2022-23748

Severity
HIGH
CVSS
7.8
EPSS
0.08533
Risk score
59.19
CISA KEV
Yes
PoC
No
Published
2025-02-06
Modified
2025-02-06
First seen
2026-08-07
Aliases
EUVD-2022-28684, GHSA-RC8F-8M86-P4VM
Products
Audinate:Dante Discovery, n/a:Audinate Dante Application Library for Windows All versions prior to and including 1.2.0
Sources
euvd EUVD-2022-28684
cisa.gov CVE-2022-23748

Description

Dante Discovery contains a process control vulnerability in mDNSResponder.exe that all allows for a DLL sideloading attack. A local attacker can leverage this vulnerability in the Dante Application Library to execute arbitrary code.

References