CVE-2022-44748
KNIME server vulnerability analysis and mitigation

Overview

A directory traversal vulnerability, also known as 'Zip-Slip', was discovered in KNIME Server since version 4.3.0. The vulnerability affects the ZIP archive extraction routines and was disclosed on November 24, 2022. This security issue impacts the server's file system when processing uploaded KNIME workflows (NVD, Vendor Advisory).

Technical details

The vulnerability allows an authenticated user with upload permissions to create a KNIME workflow that, when uploaded, can overwrite arbitrary files that the operating system user running the KNIME Server process has write access to. The vulnerability has been assigned a CVSS v3.1 base score of 7.5 HIGH (Vector: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H) by NIST, while KNIME AG assessed it with a score of 7.1 HIGH (Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:L) (NVD).

Impact

The vulnerability can impact data integrity through file content changes and potentially cause errors in other software through file corruption. In more severe cases, it can lead to remote code execution if executable files are replaced and subsequently executed by the KNIME Server process user. However, the attacker must know the location of files on the server's file system to successfully exploit this vulnerability (NVD, Vendor Advisory).

Mitigation and workarounds

There is no workaround to prevent this vulnerability from being exploited. KNIME has released fixed versions 4.13.6, 4.14.3, and 4.15.3 to address this issue. Users are advised to update to one of these versions (NVD, Vendor Advisory).

Additional resources


SourceThis report was generated using AI

Related KNIME server vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2022-44748HIGH7.5
  • KNIME serverKNIME server
  • cpe:2.3:a:knime:knime_server
NoYesNov 24, 2022
CVE-2021-44725HIGH7.5
  • KNIME serverKNIME server
  • cpe:2.3:a:knime:knime_server
NoYesDec 08, 2021
CVE-2021-44726MEDIUM6.1
  • KNIME serverKNIME server
  • cpe:2.3:a:knime:knime_server
NoYesDec 08, 2021
CVE-2021-45097MEDIUM5.5
  • KNIME serverKNIME server
  • cpe:2.3:a:knime:knime_server
NoYesDec 16, 2021

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management