- Description
- Multiple stack-based buffer overflows in WebGate eDVR Manager and Control Center allow remote attackers to execute arbitrary code via unspecified vectors to the (1) TCPDiscover or (2) TCPDiscover2 function in the WESPDiscovery.WESPDiscoveryCtrl.1 control.
- Source
- cve@mitre.org
- NVD status
- Analyzed
CVSS 3.1
- Type
- Primary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
- nvd@nist.gov
- CWE-787
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:webgate:control_center:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "FB57C024-2143-4AB6-B455-9148216E474D"
},
{
"criteria": "cpe:2.3:a:webgate:edvr_manager:-:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0DDB77C2-115A-4BBF-BA9A-C46B409DCD60"
}
],
"operator": "OR"
}
]
}
]