Описание
Buffer overflow in RSEds.dll in RSHWare.exe in the EDS Hardware Installation Tool 1.0.5.1 and earlier in Rockwell Automation RSLinx Classic before 2.58 allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed .eds file.
Ссылки
- Permissions Required
- US Government Resource
- US Government Resource
- Third Party AdvisoryVDB Entry
- Permissions Required
- US Government Resource
- US Government Resource
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 2.58 (исключая)
cpe:2.3:a:rockwellautomation:rslinx:*:*:*:*:classic:*:*:*
Конфигурация 2Версия до 1.0.5.1 (включая)
cpe:2.3:a:rockwellautomation:eds_hardware_installation_tool:*:*:*:*:*:*:*:*
EPSS
Процентиль: 66%
0.00521
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-119
Связанные уязвимости
github
больше 3 лет назад
Buffer overflow in RSEds.dll in RSHWare.exe in the EDS Hardware Installation Tool 1.0.5.1 and earlier in Rockwell Automation RSLinx Classic before 2.58 allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed .eds file.
EPSS
Процентиль: 66%
0.00521
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-119