חולשת אבטחה ב-Pyramid Solutions NetStaX EtherNet/IP Stack
Pyramid Solutions NetStaX EtherNet/IP Stack
>פגיעות זו ב-NetStaX EtherNet/IP Stack עלולה להוביל לשחיתות זיכרון, קריסת התקן או וקטור תקיפה מרחוק. היא מאפשרת ניצול ללא קבלת שגיאת CIP…
◆ סיכום AI
פגיעות זו ב-NetStaX EtherNet/IP Stack עלולה להוביל לשחיתות זיכרון, קריסת התקן או וקטור תקיפה מרחוק. היא מאפשרת ניצול ללא קבלת שגיאת CIP מההתקן המקורי.
# מהמקור
View CSAF Summary Successful exploitation of this vulnerability could result in memory corruption, a device crash, or a potential remote attack vector without the originating device receiving a CIP error indicating that the request could not be processed. The following versions of Pyramid Solutions NetStaX EtherNet/IP Stack are affected: EtherNet/IP Adapter DLL Kit (EIPA) EtherNet/IP Adapter DLL Kit with CIP Security (EIPA-SECURE) EtherNet/IP Adapter Development Kit (EADK) EtherNet/IP Adapter Development Kit with CIP Security (EADK-SECURE) EtherNet/IP Scanner DLL Kit (EIPS) <