CVE-2022-48225: Gbgplc Acuant Acufill SDK
High severity, CVSS 7.3. EPSS: 0.2% chance of exploitation in the next 30 days.
An issue was discovered in Acuant AcuFill SDK before 10.22.02.03. It is used to install drivers from several different vendors. The Gemalto Document Reader child installation process is vulnerable to DLL hijacking, because it attempts to execute (with elevated privileges) multiple non-existent DLLs out of a non-existent standard-user writable location.
Affected products
- Gbgplc Acuant Acufill SDK: before 10.22.02.03 (fixed in 10.22.02.03)
Published 2023-04-04. Last modified 2026-06-17.