Lucene search

K
cvelistIcscertCVELIST:CVE-2021-32969
HistoryMay 24, 2022 - 5:58 p.m.

CVE-2021-32969 Delta Electronics DIAScreen - Type Confusion, Out-of-bounds Write

2022-05-2417:58:57
CWE-787
icscert
www.cve.org
3
delta electronics diascreen
out-of-bounds write
remote code execution

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

28.4%

Delta Electronics DIAScreen versions prior to 1.1.0 are vulnerable to an out-of-bounds write condition, which may result in a system crash or allow an attacker to remotely execute arbitrary code.

CNA Affected

[
  {
    "product": "DIAScreen",
    "vendor": "Delta Electronics",
    "versions": [
      {
        "lessThan": "v1.1.0",
        "status": "affected",
        "version": "All",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

28.4%

Related for CVELIST:CVE-2021-32969