CVE-2022-43293

MEDIUM EPSS 50.3%
Published Apr 11, 20233y ago · Modified Jun 17, 20262w ago
5.9 CVSS 3.1
Medium
Find Similar
Published Apr 11, 2023 3y ago
Last Modified Jun 17, 2026 2w ago

Description

Wacom Driver 6.3.46-1 for Windows was discovered to contain an arbitrary file write vulnerability via the component \Wacom\Wacom_Tablet.exe.

CVSS Details

Base Score
5.9
Exploitability
0.7
Impact
5.2
Vector string
CVSS:3.1/AV:P/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H
Attack Vector Physical
Attack Complexity Low
Privileges Required None
User Interaction Required
Scope Unchanged
Confidentiality None
Integrity High
Availability High

Threat Intelligence

EPSS Exploit Probability
50.3% percentile
Exploit & Patch Status
Public Exploit Known
No Patch Available

Weaknesses 1

CWE-59

Affected Products 2

VendorProductVersionRange
wacomdriver6.3.45-1any
wacomdriver6.3.46-1any

References 4

  • cdn.wacom.com https://cdn.wacom.com/u/productsupport/drivers/win/professional/releasenotes/Windows_6.4.2-1.html
  • github.com https://github.com/LucaBarile/CVE-2022-43293
    ExploitThird Party Advisory
  • lucabarile.github.io https://lucabarile.github.io/Blog/CVE-2022-43293/index.html
    ExploitMitigationThird Party Advisory
  • lucabarile.github.io https://lucabarile.github.io/Blog/blog.html
    ExploitMitigationThird Party Advisory

Remediation

No remediation data recorded yet

Check vendor advisories and the NVD entry for patch availability.