10
CVE-2020-7007
- EPSS 0.55%
- Veröffentlicht 24.03.2020 21:15:15
- Zuletzt bearbeitet 21.11.2024 05:36:28
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
In Moxa EDS-G516E Series firmware, Version 5.2 or lower, the attacker may execute arbitrary codes or target the device, causing it to go out of service.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Moxa ≫ Eds-g516e Firmware Version <= 5.2
Moxa ≫ Eds-510e Firmware Version <= 5.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.55% | 0.674 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
CWE-121 Stack-based Buffer Overflow
A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.