Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-30575

Опубликовано: 07 июн. 2023
Источник: nvd
CVSS3: 6.5
CVSS3: 7.5
EPSS Низкий

Описание

Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths of instruction elements sent during the Guacamole protocol handshake, potentially allowing an attacker to inject Guacamole instructions during the handshake through specially-crafted data.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:guacamole:*:*:*:*:*:*:*:*
Версия до 1.5.2 (исключая)

EPSS

Процентиль: 29%
0.00104
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-131
CWE-131

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 2 лет назад

Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths of instruction elements sent during the Guacamole protocol handshake, potentially allowing an attacker to inject Guacamole instructions during the handshake through specially-crafted data.

CVSS3: 6.5
debian
больше 2 лет назад

Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths ...

CVSS3: 6.5
github
больше 2 лет назад

Apache Guacamole 1.5.1 and older may incorrectly calculate the lengths of instruction elements sent during the Guacamole protocol handshake, potentially allowing an attacker to inject Guacamole instructions during the handshake through specially-crafted data.

EPSS

Процентиль: 29%
0.00104
Низкий

6.5 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-131
CWE-131