{"id":"CVE-2022-27438","details":"Caphyon Ltd Advanced Installer 19.3 and earlier and many products that use the updater from Advanced Installer (Advanced Updater) are affected by a remote code execution vulnerability via the CustomDetection parameter in the update check function. To exploit this vulnerability, a user must start an affected installation to trigger the update check.","modified":"2026-08-12T03:51:26.291787008Z","published":"2022-06-06T22:21:30Z","database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/27xxx/CVE-2022-27438.json"},"references":[{"type":"WEB","url":"https://gerr.re/posts/cve-2022-27438/"},{"type":"WEB","url":"https://www.advancedinstaller.com/security-updates-auto-updater.html"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/27xxx/CVE-2022-27438.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-27438"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/prusa3d/prusaslicer","events":[{"introduced":"d7105dabf1db80e1babbb5d4cb386cd747c46364"},{"last_affected":"d7105dabf1db80e1babbb5d4cb386cd747c46364"}],"database_specific":{"extracted_events":[{"introduced":"2.4.2"},{"last_affected":"2.4.2"}],"source":"CPE_STRING","cpe":"cpe:2.3:a:prusa3d:prusaslicer:2.4.2:*:*:*:*:*:*:*"}}],"versions":["2.4.2","version_2.4.2"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-27438.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/vpnhood/vpnhood","events":[{"introduced":"db636c50dc49377b316586bfa2179da99e7e919f"},{"last_affected":"db636c50dc49377b316586bfa2179da99e7e919f"}],"database_specific":{"cpe":"cpe:2.3:a:vpnhood:vpnhood:2.4.299:*:*:*:*:windows:*:*","extracted_events":[{"introduced":"2.4.299"},{"last_affected":"2.4.299"}],"source":"CPE_STRING"}}],"versions":["2.4.299","v2.4.299"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-27438.json"}}],"schema_version":"1.9.0"}