9.8
CVE-2024-23978
- EPSS 0.36%
- Veröffentlicht 02.02.2024 07:15:12
- Zuletzt bearbeitet 15.05.2025 20:15:44
- Quelle vultures@jpcert.or.jp
- CVE-Watchlists
- Unerledigt
Heap-based buffer overflow vulnerability exists in HOME SPOT CUBE2 V102 and earlier. By processing invalid values, arbitrary code may be executed. Note that the affected products are no longer supported.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Kddi ≫ Home Spot Cube 2 Firmware Versionv102
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.36% | 0.577 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| 134c704f-9b21-4f2e-91b3-4a467353bcc0 | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.