Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-32527


A CWE-120: Buffer Copy without Checking Size of Input vulnerability exists that could cause a stack-based buffer overflow, potentially leading to remote code execution when an attacker sends specially crafted alarm cache data messages. Affected Products: IGSS Data Server - IGSSdataServer.exe (Versions prior to V15.0.0.22170)


Published

2023-01-30T23:15:10.987

Last Modified

2024-11-21T07:06:33.897

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application schneider-electric interactive_graphical_scada_system ≤ 15.0.0.22170 Yes

References