CVE-2022-4856
Summary
| CVE | CVE-2022-4856 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-30 10:15:00 UTC |
| Updated | 2023-11-07 03:59:00 UTC |
| Description | A vulnerability has been found in Modbus Tools Modbus Slave up to 7.5.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file mbslave.exe of the component mbs File Handler. The manipulation leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-217021 was assigned to this vulnerability. |
Risk And Classification
Problem Types: CWE-120
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Modbustools | Modbus Slave | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| CVE-2022-4856 | Modbus Tools Modbus Slave mbs File mbslave.exe buffer overflow | MISC | vuldb.com | |
| vul/poc.mbs at main · Durian1546/vul · GitHub | MISC | github.com | |
| CVE-2022-4856 | Modbus Tools Modbus Slave mbs File mbslave.exe buffer overflow | MISC | vuldb.com | |
| vul/Modbus Slave (version 7.5.1 and earlier) mbs file has a buffer overflow vulnerability.md at main · Durian1546/vul · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.