7.8
CVE-2019-13129
- EPSS 0.3%
- Veröffentlicht 01.07.2019 15:15:11
- Zuletzt bearbeitet 21.11.2024 04:24:15
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
On the Motorola router CX2L MWR04L 1.01, there is a stack consumption (infinite recursion) issue in scopd via TCP port 8010 and UDP port 8080. It is caused by snprintf and inappropriate length handling.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Motorola ≫ Cx2l Mwr04l Firmware Version1.01
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.3% | 0.499 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
CWE-674 Uncontrolled Recursion
The product does not properly control the amount of recursion that takes place, consuming excessive resources, such as allocated memory or the program stack.