7.5

CVE-2019-12323

Exploit
The HC.Server service in Hosting Controller HC10 10.14 allows an Invalid Pointer Write DoS.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
HostingcontrollerHc10 Version10.14
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 8.79% 0.945
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

http://hyp3rlinx.altervista.org
Third Party Advisory
Exploit
http://seclists.org/fulldisclosure/2019/Jun/28
Third Party Advisory
Exploit
Mailing List
https://help.hostingcontroller.com/OnlineHelp/default.aspx?pageid=hc_release_notes
Vendor Advisory
Release Notes