6.5
CVE-2022-39061
- EPSS 0.33%
- Veröffentlicht 31.01.2023 08:15:08
- Zuletzt bearbeitet 21.11.2024 07:17:28
- Quelle twcert@cert.org.tw
- CVE-Watchlists
- Unerledigt
ChangingTech MegaServiSignAdapter component has a vulnerability of Out-of-bounds Read due to insufficient validation for parameter length. An unauthenticated remote attacker can exploit this vulnerability to access partial sensitive content in memory and disrupts partial services.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Changingtec ≫ Megaservisignadapter SwPlatformwindows Version < 1.0.22.1004
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.33% | 0.554 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| twcert@cert.org.tw | 6.5 | 3.9 | 2.5 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L
|
CWE-125 Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.