CVE-2023-28502
- EPSS 80.6%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 17:15:17
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow in the "udadmin" service that can lead to remote code execution as the root use...
CVE-2023-28503
- EPSS 63.17%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 16:15:15
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from an authentication bypass vulnerability, where a special username with a deterministic password can be leverag...
CVE-2023-28504
- EPSS 2.87%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 16:15:15
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow that can lead to remote code execution as the root user.
CVE-2023-28505
- EPSS 0.25%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 16:15:15
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a buffer overflow in an API function, where a string is copied into a caller-provided buffer without checking...
CVE-2023-28506
- EPSS 0.28%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 16:15:15
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a stack-based buffer overflow, where a string is copied into a buffer using a memcpy-like function and a user...
CVE-2023-28507
- EPSS 0.21%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 15:15:14
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a memory-exhaustion issue, where a decompression routine will allocate increasing amounts of memory until all...
CVE-2023-28508
- EPSS 0.21%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 17:15:17
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a heap-based overflow vulnerability, where certain input can corrupt the heap and crash the forked process.
CVE-2023-28509
- EPSS 0.08%
- Veröffentlicht 29.03.2023 21:15:08
- Zuletzt bearbeitet 18.02.2025 17:15:17
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 use weak encryption for packet-level security and passwords transferred on the wire.
CVE-2023-28501
- EPSS 2.87%
- Veröffentlicht 29.03.2023 20:15:07
- Zuletzt bearbeitet 18.02.2025 17:15:17
Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a heap-based buffer overflow in the unirpcd daemon that, if successfully exploited, can lead to remote code e...