Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jfh4-jcmh-hq55

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. When a message is sent to the HMI TCP socket, it is forwarded to the hmiProcessMsg function through the pendingQ, and may lead to remote code execution.

A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. When a message is sent to the HMI TCP socket, it is forwarded to the hmiProcessMsg function through the pendingQ, and may lead to remote code execution.

EPSS

Процентиль: 89%
0.04996
Низкий

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 9.8
nvd
больше 4 лет назад

A buffer overflow issue was discovered in HMI3 Control Panel in Swisslog Healthcare Nexus Panel operated by released versions of software before Nexus Software 7.2.5.7. When a message is sent to the HMI TCP socket, it is forwarded to the hmiProcessMsg function through the pendingQ, and may lead to remote code execution.

EPSS

Процентиль: 89%
0.04996
Низкий

Дефекты

CWE-120