Buffer Overflow vulnerability in NBD80S09S-KLC v.YK_HZXM_NBD80S09S-KLC_V4.03.R11.7601.Nat.OnvifC.20230414.bin and NBD80N32RA-KL-V3 v.YK_HZXM_NBD80N32RA-KL_V4.03.R11.7601.Nat.OnvifC.20220120.bin allows a remote attacker to casue a denial of service via a crafted request to the service.XM component.
References
Link | Resource |
---|---|
https://www.xiongmaitech.com/en/index.php/service/notice_info/51/3 | Vendor Advisory |
https://www.xiongmaitech.com/en/index.php/service/notice_info/51/3 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
21 Nov 2024, 08:14
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.xiongmaitech.com/en/index.php/service/notice_info/51/3 - Vendor Advisory |
14 Sep 2023, 17:45
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.xiongmaitech.com/en/index.php/service/notice_info/51/3 - Vendor Advisory | |
CPE | cpe:2.3:o:xiongmaitech:nbd80n32ra-kl-v3_firmware:yk_hzxm_nbd80n32ra-kl_v4.03.r11.7601.nat.onvifc.20220120:*:*:*:*:*:*:* cpe:2.3:h:xiongmaitech:nbd80n32ra-kl-v3:-:*:*:*:*:*:*:* cpe:2.3:o:xiongmaitech:nb080s09s-klc_firmware:yk_hzxm_nbd80s09s-klc_v4.03.r11.7601.nat.onvifc.20230414:*:*:*:*:*:*:* cpe:2.3:h:xiongmaitech:nb080s09s-klc:-:*:*:*:*:*:*:* |
|
CWE | CWE-120 | |
First Time |
Xiongmaitech nb080s09s-klc Firmware
Xiongmaitech nbd80n32ra-kl-v3 Xiongmaitech Xiongmaitech nb080s09s-klc Xiongmaitech nbd80n32ra-kl-v3 Firmware |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
11 Sep 2023, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-11 19:15
Updated : 2024-11-21 08:14
NVD link : CVE-2023-39068
Mitre link : CVE-2023-39068
CVE.ORG link : CVE-2023-39068
JSON object : View
Products Affected
xiongmaitech
- nbd80n32ra-kl-v3
- nb080s09s-klc
- nbd80n32ra-kl-v3_firmware
- nb080s09s-klc_firmware
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')