Описание
In Eaton ELCSoft versions 2.04.02 and prior, there are multiple cases where specially crafted files could cause a buffer overflow which, in turn, may allow remote execution of arbitrary code.
Ссылки
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryUS Government Resource
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1Версия до 2.04.02 (исключая)
cpe:2.3:a:eaton:elcsoft:*:*:*:*:*:*:*:*
EPSS
Процентиль: 80%
0.01422
Низкий
5.3 Medium
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-20
CWE-20
Связанные уязвимости
CVSS3: 5.3
github
больше 3 лет назад
In Eaton ELCSoft versions 2.04.02 and prior, there are multiple cases where specially crafted files could cause a buffer overflow which, in turn, may allow remote execution of arbitrary code.
EPSS
Процентиль: 80%
0.01422
Низкий
5.3 Medium
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-20
CWE-20