Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8pg9-567c-mmc6

Опубликовано: 09 дек. 2021
Источник: github
Github: Не прошло ревью

Описание

A buffer overflow vulnerability in SMA100 sonicfiles RAC_COPY_TO (RacNumber 36) method allows a remote unauthenticated attacker to potentially execute code as the 'nobody' user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.

A buffer overflow vulnerability in SMA100 sonicfiles RAC_COPY_TO (RacNumber 36) method allows a remote unauthenticated attacker to potentially execute code as the 'nobody' user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.

EPSS

Процентиль: 88%
0.03739
Низкий

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 9.8
nvd
около 4 лет назад

A buffer overflow vulnerability in SMA100 sonicfiles RAC_COPY_TO (RacNumber 36) method allows a remote unauthenticated attacker to potentially execute code as the 'nobody' user in the appliance. This vulnerability affected SMA 200, 210, 400, 410 and 500v appliances.

EPSS

Процентиль: 88%
0.03739
Низкий

Дефекты

CWE-120