Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wv85-vm3v-v274

Опубликовано: 09 нояб. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow a remote unauthenticated attacker to execute arbitrary code on the targeted system by sending a specially crafted SMS message.

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists in Telit Cinterion BGS5, Telit Cinterion EHS5/6/8, Telit Cinterion PDS5/6/8, Telit Cinterion ELS61/81, Telit Cinterion PLS62 that could allow a remote unauthenticated attacker to execute arbitrary code on the targeted system by sending a specially crafted SMS message.

EPSS

Процентиль: 86%
0.02777
Низкий

8.1 High

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 8.1
nvd
около 2 лет назад

A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists in Telit Cinterion EHS5/6/8 that could allow a remote unauthenticated attacker to execute arbitrary code on the targeted system by sending a specially crafted SMS message.

CVSS3: 9.8
fstec
около 2 лет назад

Уязвимость обработчика сообщений User Plane Location (SUPL) микропрограммного обеспечения модемов Telit Cinterion, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 86%
0.02777
Низкий

8.1 High

CVSS3

Дефекты

CWE-120