HIGH🇵🇱 Wersja polska

CVE-2021-22275

CVSS 8.6v3.1pub. 2022-05-13upd. 2024-11-21

Buffer Overflow vulnerability in B&R Automation Runtime webserver allows an unauthenticated network-based attacker to stop the cyclic program on the device and cause a denial of service.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
  • Br Automation Automation Runtime

    APP
    Br-Automation
    < 4.91
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
DoSMemory
CWE
References

Related vulnerabilities

CVE-2024-0323CRITICAL9.8PL ✓same product

B&R Automation Runtime: serwer FTP obsługuje przestarzałe protokoły szyfrowania

CVE-2019-19108CRITICAL9.4PL ✓same product

Słabe uwierzytelnianie SNMP w B&R Automation Runtime umożliwia modyfikację konfiguracji

CVE-2024-5800HIGH8.3same product

Diffie-Hellman groups with insufficient strength are used in the SSL/TLS stack of B&R Automation Runtime versi...

CVE-2023-3242HIGH8.6same product

Improper initialization implementation in Portmapper used in B&R Industrial Automation Automation Runtime <G4....

CVE-2023-6028MEDIUM6.1same product

A reflected cross-site scripting (XSS) vulnerability exists in the SVG version of System Diagnostics Manager o...