6.5

CVE-2023-7339

Data collection for dowloading leads into buffer overflow

Stack-based buffer overflow vulnerability in Softing Industrial Automation GmbH gateways allows overflow buffers.
This issue affects
pnGate: through 1.30
epGate: through 1.30
mbGate: through 1.30
smartLink HW-DP: through 1.30
smartLink HW-PN: through 1.01.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerSofting
Produkt pnGate
Default Statusunaffected
Version <= 1.30
Version 0
Status affected
Version 1.34
Status unaffected
HerstellerSofting
Produkt epGate
Default Statusunaffected
Version <= 1.30
Version 0
Status affected
HerstellerSofting
Produkt mbGate
Default Statusunaffected
Version <= 1.30
Version 0
Status affected
HerstellerSofting
Produkt smartLink HW-DP
Default Statusunaffected
Version <= 1.30
Version 0
Status affected
Version 1.31
Status unaffected
HerstellerSofting
Produkt smartLink HW-PN
Default Statusunaffected
Version <= 1.01
Version 0
Status affected
Version 1.02
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.36% 0.275
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
10de8ef9-5c89-4b17-8228-e97b74acf4bd 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-121 Stack-based Buffer Overflow

A stack-based buffer overflow condition is a condition where the buffer being overwritten is allocated on the stack (i.e., is a local variable or, rarely, a parameter to a function).

https://industrial.softing.com/fileadmin/psirt/downloads/2023/CVE-2023-7339.html
https://industrial.softing.com/fileadmin/psirt/downloads/2023/CVE-2023-7339.json