Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3wm7-5h33-f92f

Опубликовано: 29 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a buffer overflow in an API function, where a string is copied into a caller-provided buffer without checking the length. This requires a valid login to exploit.

Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a buffer overflow in an API function, where a string is copied into a caller-provided buffer without checking the length. This requires a valid login to exploit.

EPSS

Процентиль: 48%
0.00253
Низкий

8.8 High

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 8.8
nvd
почти 3 года назад

Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a buffer overflow in an API function, where a string is copied into a caller-provided buffer without checking the length. This requires a valid login to exploit.

CVSS3: 8.8
fstec
почти 3 года назад

Уязвимость функции U_get_string_value() платформ баз данных Rocket Software UniData и UniVerse UniRPC, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 48%
0.00253
Низкий

8.8 High

CVSS3

Дефекты

CWE-120