8.2
CVSSv3

CVE-2023-7242

Published: 01/03/2024 Updated: 07/03/2024
CVSS v3 Base Score: 8.2 | Impact Score: 4.2 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Industrial Control Systems Network Protocol Parsers (ICSNPP) - Ethercat Zeek Plugin versions d78dda6 and prior are vulnerable to out-of-bounds read during the process of analyzing a specific Ethercat packet. This could allow an malicious user to crash the Zeek process and leak some information in memory.

Vulnerable Product Search on Vulmon Subscribe to Product

cisa icsnpp-ethercat