Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hc2h-534m-88fw

Опубликовано: 17 авг. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, an integer overflow condition exists in the affected products. When the ThinManager processes incoming messages, a read access violation occurs and terminates the process. A malicious user could exploit this vulnerability by sending a crafted synchronization protocol message and causing a denial of service condition in the software.

The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, an integer overflow condition exists in the affected products. When the ThinManager processes incoming messages, a read access violation occurs and terminates the process. A malicious user could exploit this vulnerability by sending a crafted synchronization protocol message and causing a denial of service condition in the software.

EPSS

Процентиль: 96%
0.24162
Средний

7.5 High

CVSS3

Дефекты

CWE-190
CWE-20

Связанные уязвимости

CVSS3: 7.5
nvd
больше 2 лет назад

The Rockwell Automation Thinmanager Thinserver is impacted by an improper input validation vulnerability, an integer overflow condition exists in the affected products. When the ThinManager processes incoming messages, a read access violation occurs and terminates the process. A malicious user could exploit this vulnerability by sending a crafted synchronization protocol message and causing a denial of service condition in the software.

CVSS3: 7.5
fstec
больше 2 лет назад

Уязвимость компонента ThinServer платформы для централизованного управления приложениями Rockwell Automation ThinManager, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 96%
0.24162
Средний

7.5 High

CVSS3

Дефекты

CWE-190
CWE-20