← back
CVE-2022-4856

Modbus Tools Modbus Slave mbs File mbslave.exe buffer overflow

CVSS 6.3 MEDIUMEPSS 0.6%CWE-120
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.3EPSS 0.6%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
30 Dec 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability has been found in Modbus Tools Modbus Slave up to 7.5.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file mbslave.exe of the component mbs File Handler. The manipulation leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-217021 was assigned to this vulnerability.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L