CVE-2023-43504

Severity
9.8CRITICAL
EPSS
0.2%
top 54.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 14

Description

A vulnerability has been identified in COMOS (All versions < V10.4.4). Ptmcast executable used for testing cache validation service in affected application is vulnerable to Structured Exception Handler (SEH) based buffer overflow. This could allow an attacker to execute arbitrary code on the target system or cause denial of service condition.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:HExploitability: 2.8 | Impact: 6.0

Affected Packages2 packages

NVDsiemens/comos< 10.4.4
CVEListV5siemens/comosAll versions < V10.4.4

🔴Vulnerability Details

2
GHSA
GHSA-339q-f866-3fx6: A vulnerability has been identified in COMOS (All versions < V102023-11-14
CVEList
CVE-2023-43504: A vulnerability has been identified in COMOS (All versions < V102023-11-14