8.1
CVE-2019-16110
- EPSS 2.38%
- Veröffentlicht 14.11.2019 17:15:24
- Zuletzt bearbeitet 21.11.2024 04:30:04
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The network protocol of Blade Shadow though 2.13.3 allows remote attackers to take control of a Shadow instance and execute arbitrary code by only knowing the victim's IP address, because packet data can be injected into the unencrypted UDP packet stream.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Blade-group ≫ Shadow Version <= 2.13.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.38% | 0.845 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.1 | 2.2 | 5.9 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|