CVE-2023-27857
Rockwell Automation ThinManager ThinServer Heap-Based Buffer Overflow
Severity Score
7.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
Attend
*SSVC
Descriptions
In affected versions, a heap-based buffer over-read condition occurs when the message field indicates more data than is present in the message field
in Rockwell Automation's ThinManager ThinServer. An unauthenticated remote attacker can exploit this vulnerability to crash ThinServer.exe due to a read access violation.
*Credits:
Security researchers from Tenable reported this to Rockwell Automation.
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:Attend
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-03-06 CVE Reserved
- 2023-03-22 CVE Published
- 2024-10-12 EPSS Updated
- 2024-10-21 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-125: Out-of-bounds Read
CAPEC
- CAPEC-100: Overflow Buffers
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://rockwellautomation.custhelp.com/app/answers/answer_view/a_id/1138640 | 2024-01-09 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Rockwellautomation Search vendor "Rockwellautomation" | Thinmanager Search vendor "Rockwellautomation" for product "Thinmanager" | >= 11.0.0 < 11.0.5 Search vendor "Rockwellautomation" for product "Thinmanager" and version " >= 11.0.0 < 11.0.5" | - |
Affected
| ||||||
Rockwellautomation Search vendor "Rockwellautomation" | Thinmanager Search vendor "Rockwellautomation" for product "Thinmanager" | >= 11.1.0 < 11.1.5 Search vendor "Rockwellautomation" for product "Thinmanager" and version " >= 11.1.0 < 11.1.5" | - |
Affected
| ||||||
Rockwellautomation Search vendor "Rockwellautomation" | Thinmanager Search vendor "Rockwellautomation" for product "Thinmanager" | >= 11.2.0 < 11.2.6 Search vendor "Rockwellautomation" for product "Thinmanager" and version " >= 11.2.0 < 11.2.6" | - |
Affected
| ||||||
Rockwellautomation Search vendor "Rockwellautomation" | Thinmanager Search vendor "Rockwellautomation" for product "Thinmanager" | >= 12.0.0 < 12.0.3 Search vendor "Rockwellautomation" for product "Thinmanager" and version " >= 12.0.0 < 12.0.3" | - |
Affected
| ||||||
Rockwellautomation Search vendor "Rockwellautomation" | Thinmanager Search vendor "Rockwellautomation" for product "Thinmanager" | >= 12.1.0 < 12.1.4 Search vendor "Rockwellautomation" for product "Thinmanager" and version " >= 12.1.0 < 12.1.4" | - |
Affected
| ||||||
Rockwellautomation Search vendor "Rockwellautomation" | Thinmanager Search vendor "Rockwellautomation" for product "Thinmanager" | 13.0.0 Search vendor "Rockwellautomation" for product "Thinmanager" and version "13.0.0" | - |
Affected
|