CVE-2022-4857
Summary
| CVE | CVE-2022-4857 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-30 10:15:00 UTC |
| Updated | 2023-11-07 03:59:00 UTC |
| Description | A vulnerability was found in Modbus Tools Modbus Poll up to 9.10.0 and classified as critical. Affected by this issue is some unknown functionality of the file mbpoll.exe of the component mbp File Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-217022 is the identifier assigned to this vulnerability. |
Risk And Classification
Problem Types: CWE-120
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Modbustools | Modbus Poll | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| vul/poc.mbp at main · Durian1546/vul · GitHub | MISC | github.com | |
| CVE-2022-4857 | Modbus Tools Modbus Poll mbp File mbpoll.exe buffer overflow | MISC | vuldb.com | |
| CVE-2022-4857 | Modbus Tools Modbus Poll mbp File mbpoll.exe buffer overflow | MISC | vuldb.com | |
| vul/Modbus Poll (version 9.10.0 and earlier) mbp file has a buffer overflow vulnerability.md at main · Durian1546/vul · GitHub | MISC | github.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.