PT-2022-22636 · Nhi Card · Nhi Card

How2Hack

·

Published

2022-08-02

·

Updated

2022-08-10

·

CVE-2022-35218

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions NHI card (affected versions not specified)
Description The issue is related to a heap-based buffer overflow vulnerability in the NHI card's web service component. This vulnerability is caused by insufficient validation for the packet origin parameter length. An attacker with general user privilege on a LAN can exploit this issue to disrupt the service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Memory Corruption

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

CVE-2022-35218

Affected Products

Nhi Card