Описание
Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop the network functions or execute malware via a specially crafted packet.
Ссылки
- Third Party Advisory
- PatchVendor Advisory
- Third Party Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.0.7 (включая)
Одновременно
cpe:2.3:o:mitsubishielectric:iu1-1m20-d_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:mitsubishielectric:iu1-1m20-d:-:*:*:*:*:*:*:*
EPSS
Процентиль: 74%
0.00838
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-476
Связанные уязвимости
github
больше 3 лет назад
Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and earlier allows remote attackers to stop the network functions or execute malware via a specially crafted packet.
EPSS
Процентиль: 74%
0.00838
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-476