PT-2022-28141 · Unknown · Modbus Tools Modbus Slave
Webray.Com.Cn
·
Published
2022-12-30
·
Updated
2024-05-17
·
CVE-2022-4856
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Modbus Tools Modbus Slave versions up to 7.5.1
Description
A critical issue has been found in the mbs File Handler component, specifically in the file mbslave.exe, leading to a buffer overflow. This can be exploited remotely. The issue affects an unknown functionality of the file.
Recommendations
For versions up to 7.5.1, consider disabling the
mbslave.exe file or restricting access to the mbs File Handler component until a patch is available. As a temporary workaround, avoid using the affected functionality of the file mbslave.exe to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.Exploit
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Modbus Tools Modbus Slave