HIGH · 7.5

CVE-2018-8867

In GE PACSystems RX3i CPE305/310 version 9.20 and prior, RX3i CPE330 version 9.21 and prior, RX3i CPE 400 version 9.30 and prior, PACSystems RSTi-EP CPE 100 all versions, and PACSystems CPU320/CRU320 ...

Vulnerability Description

In GE PACSystems RX3i CPE305/310 version 9.20 and prior, RX3i CPE330 version 9.21 and prior, RX3i CPE 400 version 9.30 and prior, PACSystems RSTi-EP CPE 100 all versions, and PACSystems CPU320/CRU320 RXi all versions, the device does not properly validate input, which could allow a remote attacker to send specially crafted packets causing the device to become unavailable.

CVSS Score

7.5

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
GePacsystems Rx3I Cpe305 Firmware<= 9.20
GePacsystems Rx3I Cpe305-
GePacsystems Rx3I Cpe310 Firmware<= 9.20
GePacsystems Rx3I Cpe310-
GeRx3I Cpe330 Firmware<= 9.21
GeRx3I Cpe330-
GeRx3I Cpe 400 Firmware<= 9.30
GeRx3I Cpe 400-
GePacsystems Rsti-Ep Cpe 100 Firmware-
GePacsystems Rsti-Ep Cpe 100-
GePacsystems Cpu320 Firmware-
GePacsystems Cpu320-
GePacsystems Cru320 Firmware-
GePacsystems Cru320-
GePacsystems Rxi Firmware-
GePacsystems Rxi-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2018-8867?

CVE-2018-8867 is a vulnerability with a CVSS score of 7.5 (HIGH). In GE PACSystems RX3i CPE305/310 version 9.20 and prior, RX3i CPE330 version 9.21 and prior, RX3i CPE 400 version 9.30 and prior, PACSystems RSTi-EP CPE 100 all versions, and PACSystems CPU320/CRU320 ...

How severe is CVE-2018-8867?

CVE-2018-8867 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2018-8867?

Check the references section above for vendor advisories and patch information. Affected products include: Ge Pacsystems Rx3I Cpe305 Firmware, Ge Pacsystems Rx3I Cpe305, Ge Pacsystems Rx3I Cpe310 Firmware, Ge Pacsystems Rx3I Cpe310, Ge Rx3I Cpe330 Firmware.