Lucene search

K
cvelistIcscertCVELIST:CVE-2023-0250
HistoryFeb 08, 2023 - 10:45 p.m.

CVE-2023-0250 CVE-2023-0250

2023-02-0822:45:50
CWE-121
icscert
www.cve.org
1
cve-2023-0250
delta electronics
diascreen
stack-based buffer overflow
arbitrary code

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

29.7%

Delta Electronics DIAScreen versions 1.2.1.23 and prior are vulnerable to a stack-based buffer overflow, which could allow an attacker to remotely execute arbitrary code.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "DIAScreen",
    "vendor": "Delta Electronics",
    "versions": [
      {
        "lessThanOrEqual": "1.2.1.23",
        "status": "affected",
        "version": "All versions",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

29.7%

Related for CVELIST:CVE-2023-0250