Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fm23-rwc2-2p82

Опубликовано: 11 июл. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improperly check the size of data packets received for the configuration client login, causing a stack-based buffer overflow.

This could allow an unauthenticated remote attacker to crash the server application, creating a denial of service condition.

A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improperly check the size of data packets received for the configuration client login, causing a stack-based buffer overflow.

This could allow an unauthenticated remote attacker to crash the server application, creating a denial of service condition.

EPSS

Процентиль: 57%
0.00345
Низкий

7.5 High

CVSS3

Дефекты

CWE-20
CWE-787

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

A vulnerability has been identified in SiPass integrated (All versions < V2.90.3.8). Affected server applications improperly check the size of data packets received for the configuration client login, causing a stack-based buffer overflow. This could allow an unauthenticated remote attacker to crash the server application, creating a denial of service condition.

CVSS3: 7.5
fstec
больше 2 лет назад

Уязвимость программного обеспечения управления системами безопасности и контроля доступа SiPass integrated, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 57%
0.00345
Низкий

7.5 High

CVSS3

Дефекты

CWE-20
CWE-787