10
CVE-2012-2428
- EPSS 4.59%
- Veröffentlicht 25.05.2012 19:55:01
- Zuletzt bearbeitet 16.06.2026 23:41:33
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
Integer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via a crafted packet that triggers an out-of-bounds read operation.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.59% | 0.904 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
http://www.us-cert.gov/control_systems/pdf/ICSA-12-145-02.pdf