Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-8352

Опубликовано: 13 фев. 2017
Источник: nvd
CVSS3: 10
CVSS2: 7.5
EPSS Низкий

Описание

An issue was discovered in Schneider Electric ConneXium firewalls TCSEFEC23F3F20 all versions, TCSEFEC23F3F21 all versions, TCSEFEC23FCF20 all versions, TCSEFEC23FCF21 all versions, and TCSEFEC2CF3F20 all versions. A stack-based buffer overflow can be triggered during the SNMP login authentication process that may allow an attacker to remotely execute code.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:schneider-electric:connexium_firmware:-:*:*:*:*:*:*:*

Одно из

cpe:2.3:h:schneider-electric:tcsefec23f3f20:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:tcsefec23f3f21:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:tcsefec23fcf20:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:tcsefec23fcf21:-:*:*:*:*:*:*:*
cpe:2.3:h:schneider-electric:tcsefec2cf3f20:-:*:*:*:*:*:*:*

EPSS

Процентиль: 87%
0.03358
Низкий

10 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 10
github
больше 3 лет назад

An issue was discovered in Schneider Electric ConneXium firewalls TCSEFEC23F3F20 all versions, TCSEFEC23F3F21 all versions, TCSEFEC23FCF20 all versions, TCSEFEC23FCF21 all versions, and TCSEFEC2CF3F20 all versions. A stack-based buffer overflow can be triggered during the SNMP login authentication process that may allow an attacker to remotely execute code.

EPSS

Процентиль: 87%
0.03358
Низкий

10 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-119