CVE-2022-26507
Published Apr 14, 2022
Last updated 3 months ago
Overview
- Description
- A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7. A crafted input file can lead to remote code execution. This is not the same as any of: CVE-2021-21810, CVE-2021-21811, CVE-2021-21812, CVE-2021-21815, CVE-2021-21825, CVE-2021-21826, CVE-2021-21828, CVE-2021-21829, or CVE-2021-21830. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
- Source
- cve@mitre.org
- NVD status
- Modified
- CNA Tags
- unsupported-when-assigned
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-787
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:att:xmill:0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4CC987F6-AAFA-4CDE-842D-EA7858A3E7F4" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:schneider-electric:ecostruxure_control_expert:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8DCC0C29-32C2-4463-B98F-AB4B56FF5314", "versionEndExcluding": "15.1" }, { "criteria": "cpe:2.3:a:schneider-electric:ecostruxure_control_expert:15.1:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "78F6B1CC-488B-48E8-B96B-77A1894E9E92" }, { "criteria": "cpe:2.3:a:schneider-electric:ecostruxure_process_expert:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FAB4A9EC-96A2-424D-A858-162E662EBEFB", "versionEndExcluding": "2021" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:schneider-electric:scadapack_470:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F51A7887-4F1A-428C-9E68-260E7262A678" }, { "criteria": "cpe:2.3:h:schneider-electric:scadapack_474:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "58BACC54-6609-4DCE-AEEC-A9C2396635A0" }, { "criteria": "cpe:2.3:h:schneider-electric:scadapack_570:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "FFDF44F3-2514-4CB0-A1A4-87123225B0F1" }, { "criteria": "cpe:2.3:h:schneider-electric:scadapack_574:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "4F5CDC99-C4C8-43FE-8EA7-65C7EDFD9BA3" }, { "criteria": "cpe:2.3:h:schneider-electric:scadapack_575:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "DE4172DF-94E3-4AEE-8D6B-9F48DC453B9E" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:schneider-electric:remoteconnect:-:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FFDF36B-30A5-4B35-956C-60DC15CE7EE4" } ], "operator": "OR" } ], "operator": "AND" } ]