Описание
An improper sanitization of input vulnerability in B. Braun SpaceCom2 prior to 012U000062 allows a remote unauthenticated attacker to gain user-level command-line access by passing a raw external string straight through to printf statements. The attacker is required to be on the same network as the device.
Ссылки
- Broken Link
- ExploitThird Party Advisory
- Broken Link
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 012u000062 (исключая)
Одновременно
cpe:2.3:o:bbraun:spacecom2:*:*:*:*:*:*:*:*
Одно из
cpe:2.3:h:bbraun:infusomat_large_volume_pump_871305u:-:*:*:*:*:*:*:*
cpe:2.3:h:bbraun:spacestation_8713142u:-:*:*:*:*:*:*:*
EPSS
Процентиль: 85%
0.02581
Низкий
8.1 High
CVSS3
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-134
Связанные уязвимости
CVSS3: 8.8
github
больше 3 лет назад
An improper sanitization of input vulnerability in B. Braun SpaceCom2 prior to 012U000062 allows a remote unauthenticated attacker to gain user-level command-line access by passing a raw external string straight through to printf statements. The attacker is required to be on the same network as the device.
EPSS
Процентиль: 85%
0.02581
Низкий
8.1 High
CVSS3
8.8 High
CVSS3
5.8 Medium
CVSS2
Дефекты
CWE-134