Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5j8x-4qfw-cwj9

Опубликовано: 08 апр. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.1

Описание

An authenticated, remote attacker can gain access to a dereferenced pointer contained in a request. This causes a null pointer dereference in the CmpSettings component of the affected CODESYS products and leads to a crash.

An authenticated, remote attacker can gain access to a dereferenced pointer contained in a request. This causes a null pointer dereference in the CmpSettings component of the affected CODESYS products and leads to a crash.

EPSS

Процентиль: 71%
0.00683
Низкий

7.1 High

CVSS3

Дефекты

CWE-119
CWE-822

Связанные уязвимости

CVSS3: 7.1
nvd
почти 4 года назад

An authenticated, remote attacker can gain access to a dereferenced pointer contained in a request. The accesses can subsequently lead to local overwriting of memory in the CmpTraceMgr, whereby the attacker can neither gain the values read internally nor control the values to be written. If invalid memory is accessed, this results in a crash.

EPSS

Процентиль: 71%
0.00683
Низкий

7.1 High

CVSS3

Дефекты

CWE-119
CWE-822