7.5
CVSSv2

CVE-2015-6006

Published: 29/10/2015 Updated: 30/10/2015
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The AddUserFinding implementation in Medicomp MEDCIN Engine 2.22.20153.x prior to 2.22.20153.226 might allow remote malicious users to execute arbitrary code or cause a denial of service (integer truncation and heap-based buffer overflow) via a crafted packet on port 8190.

Vulnerable Product Search on Vulmon Subscribe to Product

medicomp medcin engine 2.22.20153.223

Github Repositories

CVE-2015-2898-2901, CVE-2015-6006 POC Exploit & Metasploit module This is a proof of concept exploit for version 22220142166 and prior of the MEDCIN Engine (medcinservexe or medcinservv22exe) More details about the vulnerabilities can be found at: wwwsecuriferacom/blog/2016/01/06/medcin-engine-exploitation-part-2-cve-2015-2898-2901-cve-2015-6006/ https:/