CVE-2023-25181

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Nov 14, 2023
Updated: Nov 17, 2023
CWE ID 122
CWE ID 787

Summary

CVE-2023-25181 is a critical vulnerability affecting the HTTP Server functionality of Weston Embedded uC-HTTP v3.01.01. This issue involves a heap-based buffer overflow, which can be triggered by a maliciously crafted network packet. Successful exploitation of this vulnerability allows an attacker to execute arbitrary code on the affected system. The implications of this vulnerability are significant, as it can lead to unauthorized system access, data theft, or even complete system compromise. It is essential that users of this software apply the available patch as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share