Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-48315

Опубликовано: 05 дек. 2023
Источник: nvd
CVSS3: 8.8
CVSS3: 9.8
EPSS Низкий

Описание

Azure RTOS NetX Duo is a TCP/IP network stack designed specifically for deeply embedded real-time and IoT applications. An attacker can cause remote code execution due to memory overflow vulnerabilities in Azure RTOS NETX Duo. The affected components include processes/functions related to ftp and sntp in RTOS v6.2.1 and below. The fixes have been included in NetX Duo release 6.3.0. Users are advised to upgrade. There are no known workarounds for this vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:microsoft:azure_rtos_netx_duo:*:*:*:*:*:*:*:*
Версия до 6.3.0 (исключая)

EPSS

Процентиль: 78%
0.01095
Низкий

8.8 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-787

EPSS

Процентиль: 78%
0.01095
Низкий

8.8 High

CVSS3

9.8 Critical

CVSS3

Дефекты

CWE-787