7.5
CVSSv2

CVE-2022-29777

Published: 02/06/2022 Updated: 09/12/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Onlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a heap overflow via the component DesktopEditor/fontengine/fontconverter/FontFileBase.h.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

onlyoffice core

onlyoffice document server

Github Repositories

🕳️ Proof of Concept exploits and their descriptions for various products

Proofs of Concepts, Exploits, CVE ConnMan ConnMan is a command-line network manager designed for use with embedded devices and fast resolve times CVE ID Score Description CVE-2023-28488 ? Integer underflow and subsequent stack buffer overflow gdhcp in ConnMan through 141 could be used by network-adjacent attackers to cause a denial of service, terminating the connman