Описание
A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could enforce diagnostic texts being displayed as empty strings, if an authorized user uploads a specially crafted stb-language file.
EPSS
Процентиль: 6%
0.00024
Низкий
6.8 Medium
CVSS3
Дефекты
CWE-434
Связанные уязвимости
CVSS3: 6.8
github
почти 2 года назад
A vulnerability exists in the stb-language file handling that affects the RTU500 series product versions listed below. A malicious actor could enforce diagnostic texts being displayed as empty strings, if an authorized user uploads a specially crafted stb-language file.
EPSS
Процентиль: 6%
0.00024
Низкий
6.8 Medium
CVSS3
Дефекты
CWE-434