CVE-2022-3140


Macro URL arbitrary script execution

LibreOffice supports Office URI Schemes to enable browser integration of LibreOffice with MS SharePoint server. An additional scheme 'vnd.libreoffice.command' specific to LibreOffice was added. In the affected versions of LibreOffice links using that scheme could be constructed to call internal macros with arbitrary arguments. Which when clicked on, or activated by document events, could result in arbitrary script execution without warning. This issue affects: The Document Foundation LibreOffice 7.4 versions prior to 7.4.1; 7.3 versions prior to 7.3.6.



We have discovered 126 live websites that are affected by CVE-2022-3140.

Contact us to get more info




Affected Software

Product  LibreOffice
Category Content Management System
Vulnerable Versions
  • from 7.3 before 7.3.6
  • from 7.4 before 7.4.1
Total Vulnerable Versions195
Vulnerable Domains126 live websites (3.74% of LibreOffice install base)


Common Weakness Enumeration


CWE-20 Improper Input Validation



Details

  • Published - Oct 11, 2022
  • Updated - Mar 26, 2023

Credits

  • TheSecurityDev working with Trend Micro Zero Day Initiative





Countries

United States24 websites



Germany38 websites
Italy9 websites
France7 websites
Brazil4 websites
Canada4 websites
Cyprus4 websites
Finland4 websites
Russia4 websites
Austria3 websites

TLDs

.de31 websites
.com27 websites
.org9 websites
.net6 websites
.it6 websites
.com.br4 websites
.at3 websites
.info3 websites
.dk3 websites
.fi3 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


References


Websites affected by CVE-2022-3140

Top websites that are affected by CVE-2022-3140. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
***.*******.org United States*,***,***
*****.*****.****.****.fr France*,***,***
************************.net Italy*,***,***
***.************************.net Italy*,***,***
*****.dk Denmark*,***,***
********.org United States*,***,***
***.**************.de Germany*,***,***
***.******.com United States*,***,***
*************.com Switzerland*,***,***
***************.de Germany*,***,***
See full domain list