漏洞标题
N/A
漏洞描述信息
在APOGEE PXC系列(BACnet)(所有版本)、APOGEE PXC系列(P2 Ethernet)(所有版本)和TALON TC系列(BACnet)(所有版本)中发现了一个漏洞。受影响设备的内存转储功能中存在越界读取问题。这可能允许具有中等(MED)或更高权限的攻击者使设备进入不安全的冷启动状态。
CVSS信息
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:H
漏洞类别
跨界内存读
漏洞标题
N/A
漏洞描述信息
A vulnerability has been identified in APOGEE PXC Series (BACnet) (All versions), APOGEE PXC Series (P2 Ethernet) (All versions), TALON TC Series (BACnet) (All versions). Affected devices contain an out-of-bounds read in the memory dump function.
This could allow an attacker with Medium (MED) or higher privileges to cause the device to enter an insecure cold start state.
CVSS信息
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
漏洞类别
跨界内存读