Vulnerability Description
AeroAdmin 4.1 uses a function to copy data between two pointers where the size of the data copied is taken directly from a network packet. This can cause a buffer overflow and denial of service.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Aeroadmin | Aeroadmin | 4.1 |
Related Weaknesses (CWE)
References
- https://www.tarlogic.com/advisories/Tarlogic-2017-001.txtExploitThird Party Advisory
- https://www.tarlogic.com/advisories/Tarlogic-2017-001.txtExploitThird Party Advisory
FAQ
What is CVE-2017-8893?
CVE-2017-8893 is a vulnerability with a CVSS score of 7.5 (HIGH). AeroAdmin 4.1 uses a function to copy data between two pointers where the size of the data copied is taken directly from a network packet. This can cause a buffer overflow and denial of service.
How severe is CVE-2017-8893?
CVE-2017-8893 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-8893?
Check the references section above for vendor advisories and patch information. Affected products include: Aeroadmin Aeroadmin.