PT-2022-28141 · Unknown · Modbus Tools Modbus Slave

Webray.Com.Cn

·

Published

2022-12-30

·

Updated

2024-05-17

·

CVE-2022-4856

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Modbus Tools Modbus Slave versions up to 7.5.1
Description A critical issue has been found in the mbs File Handler component, specifically in the file mbslave.exe, leading to a buffer overflow. This can be exploited remotely. The issue affects an unknown functionality of the file.
Recommendations For versions up to 7.5.1, consider disabling the mbslave.exe file or restricting access to the mbs File Handler component until a patch is available. As a temporary workaround, avoid using the affected functionality of the file mbslave.exe to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2022-4856

Affected Products

Modbus Tools Modbus Slave