Description
CNCSoft-B Versions 1.0.0.3 and prior is vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.
References
https://us-cert.cisa.gov/ics/advisories/icsa-21-110-05
https://www.zerodayinitiative.com/advisories/ZDI-21-445/
https://www.zerodayinitiative.com/advisories/ZDI-21-446/
https://www.zerodayinitiative.com/advisories/ZDI-21-509/
https://us-cert.cisa.gov/ics/advisories/icsa-21-110-05
https://www.zerodayinitiative.com/advisories/ZDI-21-445/
https://www.zerodayinitiative.com/advisories/ZDI-21-446/
https://www.zerodayinitiative.com/advisories/ZDI-21-509/
CVSS impact metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
7.8 · High
Information
Source identifier
Vulnerability status
Modified
Published
2021-04-27T11:15:08.287Z
4 years agoLast modified
2024-11-21T04:50:25.490Z
1 year ago