Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-36724

Опубликовано: 29 дек. 2021
Источник: nvd
CVSS3: 6.1
CVSS3: 5.5
CVSS2: 2.1
EPSS Низкий

Описание

ForeScout - SecureConnector Local Service DoS - A low privilaged user which doesn't have permissions to shutdown the secure connector service writes a large amount of characters in the installationPath. This will cause the buffer to overflow and override the stack cookie causing the service to crash.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:forescout:secureconnector:11.0.4.1024:*:*:*:*:*:*:*

EPSS

Процентиль: 10%
0.00036
Низкий

6.1 Medium

CVSS3

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-120

Связанные уязвимости

github
около 4 лет назад

ForeScout - SecureConnector Local Service DoS - A low privilaged user which doesn't have permissions to shutdown the secure connector service writes a large amount of characters in the installationPath. This will cause the buffer to overflow and override the stack cookie causing the service to crash.

EPSS

Процентиль: 10%
0.00036
Низкий

6.1 Medium

CVSS3

5.5 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-120