CVE-2018-25237 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

Hirschmann HiSecOS devices versions prior to 05.3.03 contain a buffer overflow vulnerability in the HTTPS login interface when RADIUS authentication is enabled…
Critical CVSS: 9.3

CVE-2018-25237

Hirschmann HiSecOS devices versions prior to 05.3.03 contain a buffer overflow vulnerability in the HTTPS login interface when RADIUS authentication is enabled that allows remote attackers to crash the device or execute arbitrary code by submitting a password longer than 128 characters. Attackers can exploit improper bounds checking in password handling to overflow a fixed-size buffer and achieve denial of service or remote code execution.
Vendor
-
Product
-
CWE
CWE-120
Yayın Tarihi
2026-04-03 22:16:24
Güncelleme
2026-04-07 13:20:55
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar