Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-46vp-348f-8cxx

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

The Verix Multi-app Conductor application 2.7 for Verifone Verix suffers from a buffer overflow vulnerability that allows attackers to execute arbitrary code via a long configuration key value. An attacker must be able to download files to the device in order to exploit this vulnerability.

The Verix Multi-app Conductor application 2.7 for Verifone Verix suffers from a buffer overflow vulnerability that allows attackers to execute arbitrary code via a long configuration key value. An attacker must be able to download files to the device in order to exploit this vulnerability.

EPSS

Процентиль: 80%
0.01387
Низкий

8.1 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.1
nvd
почти 7 лет назад

The Verix Multi-app Conductor application 2.7 for Verifone Verix suffers from a buffer overflow vulnerability that allows attackers to execute arbitrary code via a long configuration key value. An attacker must be able to download files to the device in order to exploit this vulnerability.

EPSS

Процентиль: 80%
0.01387
Низкий

8.1 High

CVSS3

Дефекты

CWE-119