Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-28038

Опубликовано: 26 нояб. 2024
Источник: nvd
CVSS3: 9
EPSS Низкий

Описание

The web interface of the affected devices processes a cookie value improperly, leading to a stack buffer overflow. More precisely, giving too long character string to MFPSESSIONID parameter results in a stack buffer overflow. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].

EPSS

Процентиль: 58%
0.00367
Низкий

9 Critical

CVSS3

Дефекты

CWE-121

Связанные уязвимости

CVSS3: 9
github
около 1 года назад

The web interface of the affected devices processes a cookie value improperly, leading to a stack buffer overflow. More precisely, giving too long character string to MFPSESSIONID parameter results in a stack buffer overflow. As for the details of affected product names, model numbers, and versions, refer to the information provided by the respective vendors listed under [References].

EPSS

Процентиль: 58%
0.00367
Низкий

9 Critical

CVSS3

Дефекты

CWE-121