Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fxqv-fm95-w2rw

Опубликовано: 03 мая 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The 'control' in Parrot ANAFI USA firmware 1.10.4 does not check the MAV_MISSION_TYPE(0, 1, 2, 255), which allows attacker to cut off the connection between a controller and the drone by sending MAVLink MISSION_COUNT command with a wrong MAV_MISSION_TYPE.

The 'control' in Parrot ANAFI USA firmware 1.10.4 does not check the MAV_MISSION_TYPE(0, 1, 2, 255), which allows attacker to cut off the connection between a controller and the drone by sending MAVLink MISSION_COUNT command with a wrong MAV_MISSION_TYPE.

EPSS

Процентиль: 59%
0.00373
Низкий

7.5 High

CVSS3

Дефекты

CWE-404

Связанные уязвимости

CVSS3: 7.5
nvd
почти 2 года назад

The 'control' in Parrot ANAFI USA firmware 1.10.4 does not check the MAV_MISSION_TYPE(0, 1, 2, 255), which allows attacker to cut off the connection between a controller and the drone by sending MAVLink MISSION_COUNT command with a wrong MAV_MISSION_TYPE.

EPSS

Процентиль: 59%
0.00373
Низкий

7.5 High

CVSS3

Дефекты

CWE-404