6.3

CVE-2026-13148

Memory leak in scan method

Missing release of memory after effective lifetime vulnerability in Softing smartLink allows resource leak exposure.

This issue affects smartLink HW-PN: from 1.04 before 1.10.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerSofting
≫
Produkt smartLink HW-PN
Default Statusunaffected
Version 1.04
Version < 1.10
Status affected
Version 1.10
Status unaffected
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.38% 0.311
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
10de8ef9-5c89-4b17-8228-e97b74acf4bd 6.3 0 0
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:N/SC:N/SI:H/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:A/V:X/RE:L/U:Red
CWE-401 Missing Release of Memory after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.

https://industrial.softing.com/fileadmin/psirt/downloads/2026/CVE-2026-13148.html
https://industrial.softing.com/fileadmin/psirt/downloads/2026/CVE-2026-13148.json