Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-46377

Опубликовано: 10 мая 2023
Источник: nvd
CVSS3: 6.5
CVSS3: 7.5
EPSS Низкий

Описание

An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacker can send packets to trigger this vulnerability.This vulnerability occurs when no IP address argument is provided to the PORT command.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:weston-embedded:uc-ftps:1.98.00:*:*:*:*:*:*:*

EPSS

Процентиль: 70%
0.00631
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-823
CWE-125

Связанные уязвимости

CVSS3: 6.5
github
больше 2 лет назад

An out-of-bounds read vulnerability exists in the PORT command parameter extraction functionality of Weston Embedded uC-FTPs v 1.98.00. A specially-crafted set of network packets can lead to denial of service. An attacker can send packets to trigger this vulnerability.This vulnerability occurs when no IP address argument is provided to the `PORT` command.

EPSS

Процентиль: 70%
0.00631
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-823
CWE-125