Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vf3h-hp75-rg56

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.9

Описание

Philips Hue Bridge model 2.X prior to and including version 1935144020 contains a Heap-based Buffer Overflow when handling a long ZCL string during the commissioning phase, resulting in a remote code execution.

Philips Hue Bridge model 2.X prior to and including version 1935144020 contains a Heap-based Buffer Overflow when handling a long ZCL string during the commissioning phase, resulting in a remote code execution.

EPSS

Процентиль: 91%
0.06299
Низкий

7.9 High

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 7.9
nvd
около 6 лет назад

Philips Hue Bridge model 2.X prior to and including version 1935144020 contains a Heap-based Buffer Overflow when handling a long ZCL string during the commissioning phase, resulting in a remote code execution.

EPSS

Процентиль: 91%
0.06299
Низкий

7.9 High

CVSS3

Дефекты

CWE-787