Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-24482


A vulnerability has been identified in COMOS V10.2 (All versions), COMOS V10.3.3.1 (All versions < V10.3.3.1.45), COMOS V10.3.3.2 (All versions < V10.3.3.2.33), COMOS V10.3.3.3 (All versions < V10.3.3.3.9), COMOS V10.3.3.4 (All versions < V10.3.3.4.6), COMOS V10.4.0.0 (All versions < V10.4.0.0.31), COMOS V10.4.1.0 (All versions < V10.4.1.0.32), COMOS V10.4.2.0 (All versions < V10.4.2.0.25). Cache validation service in COMOS is vulnerable to Structured Exception Handler (SEH) based buffer overflow. This could allow an attacker to execute arbitrary code on the target system or cause denial of service condition.


Published

2023-02-14T11:15:14.783

Last Modified

2024-11-21T07:47:56.933

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 10.0 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application siemens comos < 10.3.3.1.45 Yes
Application siemens comos < 10.3.3.2.33 Yes
Application siemens comos < 10.3.3.3.9 Yes
Application siemens comos < 10.3.3.4.6 Yes
Application siemens comos < 10.4.0.0.31 Yes
Application siemens comos < 10.4.1.0.32 Yes
Application siemens comos < 10.4.2.0.25 Yes

References