9.1
CVE-2023-2989
- EPSS 0.07%
- Veröffentlicht 22.06.2023 20:15:09
- Zuletzt bearbeitet 21.11.2024 07:59:42
- Quelle cve@rapid7.com
- CVE-Watchlists
- Unerledigt
Fortra Globalscape EFT versions before 8.1.0.16 suffer from an out of bounds memory read in their administration server, which can allow an attacker to crash the service or bypass authentication if successfully exploited
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Globalscape ≫ Eft Server Version < 8.1.0.16
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.07% | 0.222 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
|
CWE-125 Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.