9.8
CVSSv3

CVE-2021-37222

Published: 12/08/2021 Updated: 20/08/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Parsers in the open source project RCDCAP prior to 1.0.5 allow remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via specially crafted packets.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

rcdcap project rcdcap

Recent Articles

Detailed: Critical hijacking bugs that took months to patch in Microsoft Azure Defender for IoT
The Register • Jessica Lyons Hardcastle • 01 Jan 1970

Get our weekly newsletter SQL injection, race condition, bad cryptographic check pave way for infrastructure network takeovers

SentinelOne this week detailed a handful of bugs, including two critical remote code execution vulnerabilities, it found in Microsoft Azure Defender for IoT. These security flaws, which took six months to address, could have been exploited by an unauthenticated attacker to compromise devices and take over critical infrastructure networks. Microsoft Azure Defender for IoT is supposed to detect and respond to suspicious behavior as well as highlight known vulnerabilities, and manage patching and e...