Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pr5c-7q57-fp6g

Опубликовано: 22 мар. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.

In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.

EPSS

Процентиль: 96%
0.25868
Средний

7.5 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
nvd
почти 3 года назад

In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field in Rockwell Automation's ThinManager ThinServer.  An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.

CVSS3: 7.5
fstec
почти 3 года назад

Уязвимость исполняемого файла ThinServer.exe компонента ThinServer платформы для централизованного управления приложениями Rockwell Automation ThinManager, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 96%
0.25868
Средний

7.5 High

CVSS3

Дефекты

CWE-125